Oval Definition:oval:org.opensuse.security:def:61037
Revision Date:2020-12-01Version:1
Title:Security update for python-pip (Moderate)
Description:

This update for python-pip fixes the following issues:

- CVE-2019-20916: Fixed a directory traversal in _download_http_url (bsc#1176262)
Family:unixClass:patch
Status:Reference(s):1044638
1045693
1048715
1049505
1051017
1053600
1068664
1069496
1069702
1070805
1077993
1078806
1078813
1079300
1099497
1117463
1117464
1117465
1127223
1127308
1128574
1139083
1157888
1158003
1158004
1158005
1158006
1158007
1161181
1167068
1167152
1168140
1168142
1169392
1170558
1171363
1172031
1172205
1172225
1173369
1175193
1175194
1175534
1176262
1176343
1176344
1176345
1176346
1176347
1176348
1176349
1176350
1178666
1178667
1178668
682920
963041
CVE-2009-5155
CVE-2016-5131
CVE-2017-1000158
CVE-2017-1000405
CVE-2017-15412
CVE-2017-16939
CVE-2017-3308
CVE-2017-3309
CVE-2017-3453
CVE-2017-3456
CVE-2017-3464
CVE-2017-5130
CVE-2017-9670
CVE-2018-1000030
CVE-2018-10860
CVE-2018-19490
CVE-2018-19491
CVE-2018-19492
CVE-2019-12900
CVE-2019-19577
CVE-2019-19578
CVE-2019-19579
CVE-2019-19580
CVE-2019-19581
CVE-2019-19583
CVE-2019-20807
CVE-2019-20916
CVE-2019-9169
CVE-2020-0543
CVE-2020-11739
CVE-2020-11740
CVE-2020-11741
CVE-2020-11742
CVE-2020-12108
CVE-2020-12137
CVE-2020-14349
CVE-2020-14350
CVE-2020-14364
CVE-2020-15011
CVE-2020-25595
CVE-2020-25596
CVE-2020-25597
CVE-2020-25599
CVE-2020-25600
CVE-2020-25601
CVE-2020-25603
CVE-2020-25604
CVE-2020-25694
CVE-2020-25695
CVE-2020-25696
CVE-2020-7211
SUSE-SU-2017:2035-1
SUSE-SU-2017:2598-1
SUSE-SU-2017:3225-1
SUSE-SU-2018:0401-1
SUSE-SU-2018:1372-1
SUSE-SU-2018:2385-1
SUSE-SU-2020:1550-1
SUSE-SU-2020:2048-1
SUSE-SU-2020:2726-1
SUSE-SU-2020:3464-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE Linux Enterprise Server 12 SP4-LTSS
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • MozillaThunderbird-60.7.2-lp151.2.7 is installed
  • OR MozillaThunderbird-buildsymbols-60.7.2-lp151.2.7 is installed
  • OR MozillaThunderbird-translations-common-60.7.2-lp151.2.7 is installed
  • OR MozillaThunderbird-translations-other-60.7.2-lp151.2.7 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • chromedriver-84.0.4147.105-lp152.2.9 is installed
  • OR chromium-84.0.4147.105-lp152.2.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libmysqlclient18-10.0.31-29.3 is installed
  • OR libmysqlclient18-32bit-10.0.31-29.3 is installed
  • OR mariadb-10.0.31-29.3 is installed
  • OR mariadb-client-10.0.31-29.3 is installed
  • OR mariadb-errormessages-10.0.31-29.3 is installed
  • OR mariadb-tools-10.0.31-29.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • gvim-7.4.326-17.6 is installed
  • OR vim-7.4.326-17.6 is installed
  • OR vim-data-7.4.326-17.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • glibc-2.22-62.22 is installed
  • OR glibc-32bit-2.22-62.22 is installed
  • OR glibc-devel-2.22-62.22 is installed
  • OR glibc-devel-32bit-2.22-62.22 is installed
  • OR glibc-html-2.22-62.22 is installed
  • OR glibc-i18ndata-2.22-62.22 is installed
  • OR glibc-info-2.22-62.22 is installed
  • OR glibc-locale-2.22-62.22 is installed
  • OR glibc-locale-32bit-2.22-62.22 is installed
  • OR glibc-profile-2.22-62.22 is installed
  • OR glibc-profile-32bit-2.22-62.22 is installed
  • OR nscd-2.22-62.22 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND mailman-2.1.17-3.23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • bzip2-1.0.6-30.8 is installed
  • OR bzip2-doc-1.0.6-30.8 is installed
  • OR libbz2-1-1.0.6-30.8 is installed
  • OR libbz2-1-32bit-1.0.6-30.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • bluez-5.13-5.4 is installed
  • OR libbluetooth3-5.13-5.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • libX11-1.6.2-12.12 is installed
  • OR libX11-6-1.6.2-12.12 is installed
  • OR libX11-6-32bit-1.6.2-12.12 is installed
  • OR libX11-data-1.6.2-12.12 is installed
  • OR libX11-xcb1-1.6.2-12.12 is installed
  • OR libX11-xcb1-32bit-1.6.2-12.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • MozillaFirefox-78.2.0-112.19 is installed
  • OR MozillaFirefox-devel-78.2.0-112.19 is installed
  • OR MozillaFirefox-translations-common-78.2.0-112.19 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND Package Information
  • ardana-ansible-9.0+git.1560211997.7ac9792-3.3 is installed
  • OR ardana-barbican-9.0+git.1559292830.208d258-3.3 is installed
  • OR ardana-cassandra-9.0+git.1557220194.6a90deb-3.3 is installed
  • OR ardana-ceilometer-9.0+git.1557219517.7b97993-3.3 is installed
  • OR ardana-cinder-9.0+git.1559039284.6fc1d47-3.3 is installed
  • OR ardana-cluster-9.0+git.1557219586.7c96a6d-3.3 is installed
  • OR ardana-cobbler-9.0+git.1557219626.b190680-3.3 is installed
  • OR ardana-db-9.0+git.1560868957.42bcb70-3.3 is installed
  • OR ardana-designate-9.0+git.1558588538.9211022-3.3 is installed
  • OR ardana-glance-9.0+git.1559033522.5e5be1c-3.3 is installed
  • OR ardana-heat-9.0+git.1559036788.b727b53-3.3 is installed
  • OR ardana-horizon-9.0+git.1557219807.6036a8e-3.3 is installed
  • OR ardana-input-model-9.0+git.1557220534.883f8c9-3.3 is installed
  • OR ardana-installer-ui-9.0+git.1559171053.476225c-3.3 is installed
  • OR ardana-ironic-9.0+git.1560365077.17250c6-3.3 is installed
  • OR ardana-keystone-9.0+git.1559292289.b5ed172-3.3 is installed
  • OR ardana-logging-9.0+git.1557219914.6d7ebb5-3.3 is installed
  • OR ardana-magnum-9.0+git.1557219960.226e32b-3.3 is installed
  • OR ardana-manila-9.0+git.1556646861.58ce24f-3.3 is installed
  • OR ardana-memcached-9.0+git.1557219995.cd49525-3.3 is installed
  • OR ardana-monasca-9.0+git.1556731170.c8210e0-3.3 is installed
  • OR ardana-monasca-transform-9.0+git.1557220073.7e88cfa-3.3 is installed
  • OR ardana-mq-9.0+git.1560214193.fc0378b-3.3 is installed
  • OR ardana-neutron-9.0+git.1560464557.d2f6200-3.3 is installed
  • OR ardana-nova-9.0+git.1559869848.7a706df-3.3 is installed
  • OR ardana-octavia-9.0+git.1560519270.e0a2620-3.3 is installed
  • OR ardana-opsconsole-9.0+git.1553642196.ba23382-3.3 is installed
  • OR ardana-opsconsole-ui-9.0+git.1555530925.206f1a8-4.3 is installed
  • OR ardana-osconfig-9.0+git.1560269313.7ddaff2-3.3 is installed
  • OR ardana-service-9.0+git.1560974342.47a5b12-3.3 is installed
  • OR ardana-service-ansible-9.0+git.1557220501.ebd3011-3.3 is installed
  • OR ardana-ses-9.0+git.1554740095.48252d3-3.3 is installed
  • OR ardana-spark-9.0+git.1557220247.e78d1c3-3.3 is installed
  • OR ardana-swift-9.0+git.1559038506.cc119d9-3.3 is installed
  • OR ardana-tempest-9.0+git.1560949748.f0bd816-3.3 is installed
  • OR ardana-tls-9.0+git.1557220381.5641a2e-3.3 is installed
  • OR caasp-openstack-heat-templates-1.0+git.1560518045.ad7dc6d-3.3 is installed
  • OR documentation-suse-openstack-cloud-deployment-9.20190621-3.3 is installed
  • OR documentation-suse-openstack-cloud-operations-9.20190621-3.3 is installed
  • OR documentation-suse-openstack-cloud-security-9.20190621-3.3 is installed
  • OR documentation-suse-openstack-cloud-supplement-9.20190621-3.3 is installed
  • OR galera-python-clustercheck-0.0+git.1562242499.36b8b64-6.3 is installed
  • OR grafana-5.3.3-3.3 is installed
  • OR grafana-monasca-ui-drilldown-1.14.1~dev7-3.3 is installed
  • OR openstack-ceilometer-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-agent-central-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-agent-compute-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-agent-ipmi-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-agent-notification-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-polling-11.0.2~dev13-3.3 is installed
  • OR openstack-cinder-13.0.6~dev12-3.3 is installed
  • OR openstack-cinder-api-13.0.6~dev12-3.3 is installed
  • OR openstack-cinder-backup-13.0.6~dev12-3.3 is installed
  • OR openstack-cinder-scheduler-13.0.6~dev12-3.3 is installed
  • OR openstack-cinder-volume-13.0.6~dev12-3.3 is installed
  • OR openstack-dashboard-14.0.4~dev4-3.3 is installed
  • OR openstack-designate-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-agent-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-api-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-central-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-producer-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-sink-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-worker-7.0.1~dev20-3.3 is installed
  • OR openstack-heat-11.0.3~dev5-3.3 is installed
  • OR openstack-heat-api-11.0.3~dev5-3.3 is installed
  • OR openstack-heat-api-cfn-11.0.3~dev5-3.3 is installed
  • OR openstack-heat-engine-11.0.3~dev5-3.3 is installed
  • OR openstack-heat-plugin-heat_docker-11.0.3~dev5-3.3 is installed
  • OR openstack-horizon-plugin-designate-ui-7.0.1~dev7-3.3 is installed
  • OR openstack-horizon-plugin-heat-ui-1.4.1~dev4-4.3 is installed
  • OR openstack-horizon-plugin-magnum-ui-5.0.2~dev9-3.3 is installed
  • OR openstack-horizon-plugin-monasca-ui-1.14.1~dev7-3.3 is installed
  • OR openstack-ironic-11.1.4~dev2-3.3 is installed
  • OR openstack-ironic-api-11.1.4~dev2-3.3 is installed
  • OR openstack-ironic-conductor-11.1.4~dev2-3.3 is installed
  • OR openstack-ironic-python-agent-3.3.2~dev13-3.3 is installed
  • OR openstack-keystone-14.1.1~dev7-3.3 is installed
  • OR openstack-magnum-7.1.1~dev24-3.3 is installed
  • OR openstack-magnum-api-7.1.1~dev24-3.3 is installed
  • OR openstack-magnum-conductor-7.1.1~dev24-3.3 is installed
  • OR openstack-manila-7.3.1~dev2-4.3 is installed
  • OR openstack-manila-api-7.3.1~dev2-4.3 is installed
  • OR openstack-manila-data-7.3.1~dev2-4.3 is installed
  • OR openstack-manila-scheduler-7.3.1~dev2-4.3 is installed
  • OR openstack-manila-share-7.3.1~dev2-4.3 is installed
  • OR openstack-monasca-agent-2.8.1~dev10-3.3 is installed
  • OR openstack-monasca-notification-1.14.1~dev8-6.3 is installed
  • OR openstack-neutron-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-dhcp-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-fwaas-13.0.2~dev14-3.3 is installed
  • OR openstack-neutron-gbp-5.0.1~dev443-3.3 is installed
  • OR openstack-neutron-ha-tool-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-l3-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-lbaas-13.0.1~dev12-3.3 is installed
  • OR openstack-neutron-lbaas-agent-13.0.1~dev12-3.3 is installed
  • OR openstack-neutron-linuxbridge-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-macvtap-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-metadata-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-metering-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-openvswitch-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-server-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-vpnaas-13.0.2~dev4-3.3 is installed
  • OR openstack-neutron-vyatta-agent-13.0.2~dev4-3.3 is installed
  • OR openstack-nova-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-api-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-cells-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-compute-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-conductor-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-console-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-novncproxy-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-placement-api-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-scheduler-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-serialproxy-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-vncproxy-18.2.2~dev9-3.3 is installed
  • OR openstack-octavia-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-amphora-agent-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-api-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-health-manager-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-housekeeping-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-worker-3.1.2~dev2-3.3 is installed
  • OR python-ardana-configurationprocessor-9.0+git.1558039547.f0d0ddf-3.4 is installed
  • OR python-barbican-tempest-plugin-0.1.0-4.3 is installed
  • OR python-ceilometer-11.0.2~dev13-3.3 is installed
  • OR python-cinder-13.0.6~dev12-3.3 is installed
  • OR python-cinderclient-4.0.2-3.3 is installed
  • OR python-cinderclient-doc-4.0.2-3.3 is installed
  • OR python-cinderlm-0.0.2+git.1541454501.6148725-3.3 is installed
  • OR python-designate-7.0.1~dev20-3.3 is installed
  • OR python-heat-11.0.3~dev5-3.3 is installed
  • OR python-horizon-14.0.4~dev4-3.3 is installed
  • OR python-horizon-plugin-designate-ui-7.0.1~dev7-3.3 is installed
  • OR python-horizon-plugin-heat-ui-1.4.1~dev4-4.3 is installed
  • OR python-horizon-plugin-magnum-ui-5.0.2~dev9-3.3 is installed
  • OR python-horizon-plugin-monasca-ui-1.14.1~dev7-3.3 is installed
  • OR python-ironic-11.1.4~dev2-3.3 is installed
  • OR python-ironicclient-2.5.2-4.3 is installed
  • OR python-ironicclient-doc-2.5.2-4.3 is installed
  • OR python-keystone-14.1.1~dev7-3.3 is installed
  • OR python-magnum-7.1.1~dev24-3.3 is installed
  • OR python-manila-7.3.1~dev2-4.3 is installed
  • OR python-manila-tempest-plugin-0.1.0-3.3 is installed
  • OR python-manilaclient-1.24.2-3.3 is installed
  • OR python-manilaclient-doc-1.24.2-3.3 is installed
  • OR python-monasca-agent-2.8.1~dev10-3.3 is installed
  • OR python-monasca-notification-1.14.1~dev8-6.3 is installed
  • OR python-neutron-13.0.4~dev89-3.3 is installed
  • OR python-neutron-fwaas-13.0.2~dev14-3.3 is installed
  • OR python-neutron-gbp-5.0.1~dev443-3.3 is installed
  • OR python-neutron-lbaas-13.0.1~dev12-3.3 is installed
  • OR python-neutron-vpnaas-13.0.2~dev4-3.3 is installed
  • OR python-nova-18.2.2~dev9-3.3 is installed
  • OR python-octavia-3.1.2~dev2-3.3 is installed
  • OR python-openstack_auth-14.0.4~dev4-3.3 is installed
  • OR python-os-brick-2.5.7-3.3 is installed
  • OR python-os-brick-common-2.5.7-3.3 is installed
  • OR python-oslo.db-4.40.2-3.3 is installed
  • OR python-proliantutils-2.8.4-1 is installed
  • OR supportutils-plugin-suse-openstack-cloud-9.0.1562324636.e7046a3-1 is installed
  • OR venv-openstack-barbican-7.0.1~dev18-3.2 is installed
  • OR venv-openstack-barbican-x86_64-7.0.1~dev18-3.2 is installed
  • OR venv-openstack-cinder-13.0.6~dev12-3.2 is installed
  • OR venv-openstack-cinder-x86_64-13.0.6~dev12-3.2 is installed
  • OR venv-openstack-designate-7.0.1~dev20-3.3 is installed
  • OR venv-openstack-designate-x86_64-7.0.1~dev20-3.3 is installed
  • OR venv-openstack-glance-17.0.1~dev16-3.3 is installed
  • OR venv-openstack-glance-x86_64-17.0.1~dev16-3.3 is installed
  • OR venv-openstack-heat-11.0.3~dev5-3.3 is installed
  • OR venv-openstack-heat-x86_64-11.0.3~dev5-3.3 is installed
  • OR venv-openstack-horizon-14.0.4~dev4-4.3 is installed
  • OR venv-openstack-horizon-x86_64-14.0.4~dev4-4.3 is installed
  • OR venv-openstack-ironic-11.1.4~dev2-4.3 is installed
  • OR venv-openstack-ironic-x86_64-11.1.4~dev2-4.3 is installed
  • OR venv-openstack-keystone-14.1.1~dev7-3.3 is installed
  • OR venv-openstack-keystone-x86_64-14.1.1~dev7-3.3 is installed
  • OR venv-openstack-magnum-7.1.1~dev24-4.3 is installed
  • OR venv-openstack-magnum-x86_64-7.1.1~dev24-4.3 is installed
  • OR venv-openstack-manila-7.3.1~dev2-3.3 is installed
  • OR venv-openstack-manila-x86_64-7.3.1~dev2-3.3 is installed
  • OR venv-openstack-monasca-2.7.1~dev10-3.3 is installed
  • OR venv-openstack-monasca-ceilometer-1.8.2~dev3-3.3 is installed
  • OR venv-openstack-monasca-ceilometer-x86_64-1.8.2~dev3-3.3 is installed
  • OR venv-openstack-monasca-x86_64-2.7.1~dev10-3.3 is installed
  • OR venv-openstack-neutron-13.0.4~dev89-6.3 is installed
  • OR venv-openstack-neutron-x86_64-13.0.4~dev89-6.3 is installed
  • OR venv-openstack-nova-18.2.2~dev9-3.3 is installed
  • OR venv-openstack-nova-x86_64-18.2.2~dev9-3.3 is installed
  • OR venv-openstack-octavia-3.1.2~dev2-4.3 is installed
  • OR venv-openstack-octavia-x86_64-3.1.2~dev2-4.3 is installed
  • OR venv-openstack-sahara-9.0.2~dev9-3.3 is installed
  • OR venv-openstack-sahara-x86_64-9.0.2~dev9-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND python-pip-9.0.1-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND python-requests-2.20.1-4.3 is installed
  • BACK