[Git][security-tracker-team/security-tracker][master] Add CVE-2020-10735/python

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Sep 6 07:52:10 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
922f2dfa by Salvatore Bonaccorso at 2022-09-06T08:51:22+02:00
Add CVE-2020-10735/python

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -177476,6 +177476,16 @@ CVE-2020-10736 (An authorization bypass vulnerability was found in Ceph versions
 	NOTE: https://github.com/ceph/ceph/commit/f2cf2ce1bd9a86462510a7a12afa4e528b615df2 (v15.2.2)
 CVE-2020-10735
 	RESERVED
+	- python3.11 <unfixed>
+	- python3.10 <unfixed>
+	- python3.9 <unfixed>
+	- python3.7 <removed>
+	NOTE: https://github.com/python/cpython/issues/95778
+	NOTE: https://github.com/python/cpython/pull/96499
+	NOTE: https://github.com/python/cpython/commit/f8b71da9aac6ea74808dcdd0cc266e705431356b (3.11-branch)
+	NOTE: https://github.com/python/cpython/commit/8f0fa4bd10aba723aff988720cd26b93be99bc12 (3.10-branch)
+	NOTE: https://github.com/python/cpython/commit/cec1e9dfd769bd3a16142d0fdd1a36f19c77ed15 (3.9-branch)
+	NOTE: https://github.com/python/cpython/commit/15ec1afd4fcd2da1e2d2b256c562fb42d8d886a2 (3.7-branch)
 CVE-2020-10734 (A vulnerability was found in keycloak in the way that the OIDC logout  ...)
 	NOT-FOR-US: Keycloak
 CVE-2020-10733 (The Windows installer for PostgreSQL 9.5 - 12 invokes system-provided  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/922f2dfaab16dfd8e02f837b971d34d8cc8c16aa

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/922f2dfaab16dfd8e02f837b971d34d8cc8c16aa
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220906/969c28ce/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list