Oval Definition:oval:org.opensuse.security:def:52100
Revision Date:2020-12-01Version:1
Title:Security update for python (Moderate)
Description:

This update for python fixes the following issues:

Security issues fixed:

- CVE-2019-18348: Fixed a CRLF injection via the host part of the url passed to urlopen(). Now an InvalidURL exception is raised (bsc#1155094). - CVE-2019-9674: Improved the documentation to reflect the dangers of zip-bombs (bsc#1162825).
Family:unixClass:patch
Status:Reference(s):1046299
1046303
1046305
1050244
1050536
1050545
1051510
1055186
1061840
1064802
1065600
1066129
1073513
1082635
1083647
1086323
1087092
1089644
1090631
1093205
1096254
1097583
1097584
1097585
1097586
1097587
1097588
1098291
1101674
1109158
1111666
1112178
1113994
1114279
1117665
1119461
1119465
1123034
1123080
1129991
1133140
1134303
1135642
1135854
1135873
1135967
1137040
1137799
1137861
1138190
1139073
1140090
1140729
1140845
1140883
1141600
1142635
1142667
1143706
1144338
1144375
1144449
1144903
1145099
1146612
1148410
1149119
1149853
1150452
1150457
1150465
1150875
1151508
1151807
1152033
1152624
1152665
1152685
1152696
1152697
1152763
1152788
1152790
1152791
1153112
1153158
1153236
1153263
1153476
1153509
1153607
1153646
1153681
1153713
1153717
1153718
1153719
1153811
1153921
1153969
1154108
1154189
1154242
1154268
1154354
1154372
1154521
1154578
1154607
1154608
1154610
1154611
1154651
1154737
1154747
1154824
1154848
1154858
1154905
1154956
1155061
1155094
1155178
1155179
1155184
1155186
1155671
1156353
1162825
1163102
1163103
1163104
1168994
1172466
1173812
1174463
1174570
1174628
1177914
802154
814594
919448
987367
998153
CVE-2010-1205
CVE-2010-2252
CVE-2010-2529
CVE-2010-3430
CVE-2010-3431
CVE-2010-3853
CVE-2011-1000
CVE-2011-2501
CVE-2011-3026
CVE-2011-3045
CVE-2011-3048
CVE-2011-3148
CVE-2011-3149
CVE-2011-3172
CVE-2012-3386
CVE-2012-4929
CVE-2013-1431
CVE-2013-2064
CVE-2013-7353
CVE-2013-7354
CVE-2014-2583
CVE-2014-4877
CVE-2014-9474
CVE-2015-3238
CVE-2018-12207
CVE-2019-10220
CVE-2019-11135
CVE-2019-15604
CVE-2019-15605
CVE-2019-15606
CVE-2019-16232
CVE-2019-16233
CVE-2019-16234
CVE-2019-16995
CVE-2019-17056
CVE-2019-17133
CVE-2019-17666
CVE-2019-18348
CVE-2019-3695
CVE-2019-3696
CVE-2019-9674
CVE-2020-0543
CVE-2020-0548
CVE-2020-0549
CVE-2020-10713
CVE-2020-14308
CVE-2020-14309
CVE-2020-14310
CVE-2020-14311
CVE-2020-14344
CVE-2020-15706
CVE-2020-15707
CVE-2020-15999
SUSE-SU-2020:0357-1
SUSE-SU-2020:0455-1
SUSE-SU-2020:1339-1
SUSE-SU-2020:1600-1
SUSE-SU-2020:2197-1
SUSE-SU-2020:2995-1
Platform(s):openSUSE Leap 15.0
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
SUSE Linux Enterprise Module for Web Scripting 15 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 15-LTSS
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Workstation Extension 15 SP1
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • liblightdm-gobject-1-0-1.24.1-lp150.1 is installed
  • OR lightdm-1.24.1-lp150.1 is installed
  • OR lightdm-lang-1.24.1-lp150.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • libfreebl3-3.16.5-0.7 is installed
  • OR libfreebl3-32bit-3.16.5-0.7 is installed
  • OR libsoftokn3-3.16.5-0.7 is installed
  • OR libsoftokn3-32bit-3.16.5-0.7 is installed
  • OR mozilla-nss-3.16.5-0.7 is installed
  • OR mozilla-nss-32bit-3.16.5-0.7 is installed
  • OR mozilla-nss-tools-3.16.5-0.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • libldb1-3.6.3-64 is installed
  • OR libldb1-32bit-3.6.3-64 is installed
  • OR libsmbclient0-3.6.3-64 is installed
  • OR libsmbclient0-32bit-3.6.3-64 is installed
  • OR libtalloc2-3.6.3-64 is installed
  • OR libtalloc2-32bit-3.6.3-64 is installed
  • OR libtdb1-3.6.3-64 is installed
  • OR libtdb1-32bit-3.6.3-64 is installed
  • OR libtevent0-3.6.3-64 is installed
  • OR libtevent0-32bit-3.6.3-64 is installed
  • OR libwbclient0-3.6.3-64 is installed
  • OR libwbclient0-32bit-3.6.3-64 is installed
  • OR samba-3.6.3-64 is installed
  • OR samba-32bit-3.6.3-64 is installed
  • OR samba-client-3.6.3-64 is installed
  • OR samba-client-32bit-3.6.3-64 is installed
  • OR samba-doc-3.6.3-64 is installed
  • OR samba-krb-printing-3.6.3-64 is installed
  • OR samba-winbind-3.6.3-64 is installed
  • OR samba-winbind-32bit-3.6.3-64 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND telepathy-gabble-0.18.1-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • libpng12-0-1.2.50-8 is installed
  • OR libpng12-0-32bit-1.2.50-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND libmpfr4-3.1.2-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND iputils-s20121221-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • gnome-shell-search-provider-nautilus-3.20.3-23.6 is installed
  • OR libnautilus-extension1-3.20.3-23.6 is installed
  • OR libnautilus-extension1-32bit-3.20.3-23.6 is installed
  • OR nautilus-3.20.3-23.6 is installed
  • OR nautilus-lang-3.20.3-23.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • libpython2_7-1_0-32bit-2.7.17-7.38 is installed
  • OR python-2.7.17-7.38 is installed
  • OR python-32bit-2.7.17-7.38 is installed
  • OR python-base-2.7.17-7.38 is installed
  • OR python-base-32bit-2.7.17-7.38 is installed
  • OR python-demo-2.7.17-7.38 is installed
  • OR python-doc-2.7.17-7.38 is installed
  • OR python-doc-pdf-2.7.17-7.38 is installed
  • OR python-idle-2.7.17-7.38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 SP1 is installed
  • AND Package Information
  • nodejs10-10.19.0-1.18 is installed
  • OR nodejs10-devel-10.19.0-1.18 is installed
  • OR nodejs10-docs-10.19.0-1.18 is installed
  • OR npm10-10.19.0-1.18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • xen-4.5.3_10-20 is installed
  • OR xen-doc-html-4.5.3_10-20 is installed
  • OR xen-kmp-default-4.5.3_10_k3.12.62_60.62-20 is installed
  • OR xen-libs-4.5.3_10-20 is installed
  • OR xen-libs-32bit-4.5.3_10-20 is installed
  • OR xen-tools-4.5.3_10-20 is installed
  • OR xen-tools-domU-4.5.3_10-20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_74-60_64_82-default-5-2 is installed
  • OR kgraft-patch-3_12_74-60_64_82-xen-5-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_25-5-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND coolkey-1.1.0-147 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • libopenssl-devel-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-32bit-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-hmac-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-hmac-32bit-1.0.2j-60.30 is installed
  • OR openssl-1.0.2j-60.30 is installed
  • OR openssl-doc-1.0.2j-60.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • ghostscript-9.25-23.13 is installed
  • OR ghostscript-x11-9.25-23.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_114-92_64-default-5-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_18-5-2 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND
  • MozillaFirefox-60.7.2-109.80 is installed
  • OR MozillaFirefox-translations-common-60.7.2-109.80 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND
  • MozillaFirefox-60.7.2-109.80 is installed
  • OR MozillaFirefox-translations-common-60.7.2-109.80 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • bind-9.9.9P1-62 is installed
  • OR bind-chrootenv-9.9.9P1-62 is installed
  • OR bind-doc-9.9.9P1-62 is installed
  • OR bind-libs-9.9.9P1-62 is installed
  • OR bind-libs-32bit-9.9.9P1-62 is installed
  • OR bind-utils-9.9.9P1-62 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libecpg6-10.9-1.12 is installed
  • OR libpq5-10.9-1.12 is installed
  • OR libpq5-32bit-10.9-1.12 is installed
  • OR postgresql10-10.9-1.12 is installed
  • OR postgresql10-contrib-10.9-1.12 is installed
  • OR postgresql10-docs-10.9-1.12 is installed
  • OR postgresql10-libs-10.9-1.12 is installed
  • OR postgresql10-plperl-10.9-1.12 is installed
  • OR postgresql10-plpython-10.9-1.12 is installed
  • OR postgresql10-pltcl-10.9-1.12 is installed
  • OR postgresql10-server-10.9-1.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_162-94_69-default-6-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_21-6-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • libpcap-1.8.1-10.3 is installed
  • OR libpcap1-1.8.1-10.3 is installed
  • OR tcpdump-4.9.2-14.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND ucode-intel-20180807-13.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • MozillaFirefox-52.9.0esr-109.38 is installed
  • OR MozillaFirefox-translations-52.9.0esr-109.38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND Package Information
  • libX11-1.6.5-3.9 is installed
  • OR libX11-6-1.6.5-3.9 is installed
  • OR libX11-6-32bit-1.6.5-3.9 is installed
  • OR libX11-data-1.6.5-3.9 is installed
  • OR libX11-devel-1.6.5-3.9 is installed
  • OR libX11-xcb1-1.6.5-3.9 is installed
  • OR libX11-xcb1-32bit-1.6.5-3.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND ucode-intel-20200602-3.43 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
  • AND Package Information
  • kernel-default-4.12.14-197.26 is installed
  • OR kernel-default-extra-4.12.14-197.26 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • openstack-trove-4.0.1~a0~dev2-2 is installed
  • OR openstack-trove-api-4.0.1~a0~dev2-2 is installed
  • OR openstack-trove-conductor-4.0.1~a0~dev2-2 is installed
  • OR openstack-trove-guestagent-4.0.1~a0~dev2-2 is installed
  • OR openstack-trove-taskmanager-4.0.1~a0~dev2-2 is installed
  • OR python-trove-4.0.1~a0~dev2-2 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND python-Twisted-15.2.1-9.8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • bzip2-1.0.6-30.5 is installed
  • OR bzip2-doc-1.0.6-30.5 is installed
  • OR libbz2-1-1.0.6-30.5 is installed
  • OR libbz2-1-32bit-1.0.6-30.5 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND python-ecdsa-0.13.3-5.10 is installed
  • BACK