shield
Security update for python
SUSE-SLE-WE-12-SP1-2016-1245
This update for python fixes the following issues: - CVE-2016-0772: smtplib vulnerability opens startTLS stripping attack (bsc#984751) - CVE-2016-5636: heap overflow when importing malformed zip files (bsc#985177) - CVE-2016-5699: incorrect validation of HTTP headers allow header injection (bsc#985348) - CVE-2016-1000110: HTTPoxy vulnerability in urllib, fixed by disregarding HTTP_PROXY when REQUEST_METHOD is also set (bsc#989523)
-
Release DateAug 19 2016
-
ReferencesBugzilla: 984751, 985177, 989523, 985348
CVEs: CVE-2016-1000110, CVE-2016-0772, CVE-2016-5699, CVE-2016-5636 -
Typesecurity
-
Severitymoderate
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
SUSE Linux Enterprise Workstation Extension 12.1 x86_64
-
Packagespython-base
Python Interpreter base packagepython-devel2.7.9-24.2 lock src
Include Files and Libraries Mandatory for Building Python Modules2.7.9-24.2 lock rpm