registry.hub.docker.com/cytopia/yamllint (alpine 3.16.6)¶ Trivy Image Scan Image: registry.hub.docker.com/cytopia/yamllint (alpine 3.16.6) Scan date: 2024-12-04 registry.hub.docker.com/cytopia/yamllint (alpine 3.16.6) (alpine)¶ Package Vulnerability ID Severity Installed Version Fixed Version Links busybox CVE-2023-42366 MEDIUM 1.35.0-r17 1.35.0-r18 https://access.redhat.com/security/cve/CVE-2023-42366 https://bugs.busybox.net/show_bug.cgi?id=15874 https://nvd.nist.gov/vuln/detail/CVE-2023-42366 https://www.cve.org/CVERecord?id=CVE-2023-42366 expat CVE-2023-52425 HIGH 2.5.0-r0 2.6.0-r0 http://www.openwall.com/lists/oss-security/2024/03/20/5 https://access.redhat.com/errata/RHSA-2024:1530 https://access.redhat.com/security/cve/CVE-2023-52425 https://bugzilla.redhat.com/2262877 https://bugzilla.redhat.com/2268766 https://bugzilla.redhat.com/show_bug.cgi?id=2262877 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-52425 https://errata.almalinux.org/9/ALSA-2024-1530.html https://errata.rockylinux.org/RLSA-2024:1615 https://github.com/libexpat/libexpat/pull/789 https://linux.oracle.com/cve/CVE-2023-52425.html https://linux.oracle.com/errata/ELSA-2024-4259.html https://lists.debian.org/debian-lts-announce/2024/04/msg00006.html https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNRIHC7DVVRAIWFRGV23Y6UZXFBXSQDB/ https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WNUBSGZFEZOBHJFTAD42SAN4ATW2VEMV/ https://nvd.nist.gov/vuln/detail/CVE-2023-52425 https://security.netapp.com/advisory/ntap-20240614-0003/ https://ubuntu.com/security/notices/USN-6694-1 https://www.cve.org/CVERecord?id=CVE-2023-52425 expat CVE-2024-28757 HIGH 2.5.0-r0 2.6.2-r0 http://www.openwall.com/lists/oss-security/2024/03/15/1 https://access.redhat.com/errata/RHSA-2024:1530 https://access.redhat.com/security/cve/CVE-2024-28757 https://bugzilla.redhat.com/2262877 https://bugzilla.redhat.com/2268766 https://errata.almalinux.org/9/ALSA-2024-1530.html https://github.com/libexpat/libexpat/issues/839 https://github.com/libexpat/libexpat/pull/842 https://linux.oracle.com/cve/CVE-2024-28757.html https://linux.oracle.com/errata/ELSA-2024-1530.html https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FPLC6WDSRDUYS7F7JWAOVOHFNOUQ43DD/ https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LKJ7V5F6LJCEQJXDBWGT27J7NAP3E3N7/ https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VK2O34GH43NTHBZBN7G5Y6YKJKPUCTBE/ https://nvd.nist.gov/vuln/detail/CVE-2024-28757 https://security.netapp.com/advisory/ntap-20240322-0001/ https://ubuntu.com/security/notices/USN-6694-1 https://www.cve.org/CVERecord?id=CVE-2024-28757 expat CVE-2023-52426 MEDIUM 2.5.0-r0 2.6.0-r0 https://access.redhat.com/security/cve/CVE-2023-52426 https://cwe.mitre.org/data/definitions/776.html https://github.com/libexpat/libexpat/commit/0f075ec8ecb5e43f8fdca5182f8cca4703da0404 https://github.com/libexpat/libexpat/pull/777 https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNRIHC7DVVRAIWFRGV23Y6UZXFBXSQDB/ https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WNUBSGZFEZOBHJFTAD42SAN4ATW2VEMV/ https://nvd.nist.gov/vuln/detail/CVE-2023-52426 https://security.netapp.com/advisory/ntap-20240307-0005/ https://www.cve.org/CVERecord?id=CVE-2023-52426 libcrypto1.1 CVE-2023-3446 MEDIUM 1.1.1u-r1 1.1.1u-r2 http://www.openwall.com/lists/oss-security/2023/07/19/4 http://www.openwall.com/lists/oss-security/2023/07/19/5 http://www.openwall.com/lists/oss-security/2023/07/19/6 https://access.redhat.com/errata/RHSA-2024:2447 https://access.redhat.com/security/cve/CVE-2023-3446 https://bugzilla.redhat.com/2223016 https://bugzilla.redhat.com/2224962 https://bugzilla.redhat.com/2227852 https://bugzilla.redhat.com/2248616 https://bugzilla.redhat.com/2257571 https://bugzilla.redhat.com/2258502 https://bugzilla.redhat.com/2259944 https://bugzilla.redhat.com/show_bug.cgi?id=2224962 https://bugzilla.redhat.com/show_bug.cgi?id=2257582 https://bugzilla.redhat.com/show_bug.cgi?id=2257583 https://bugzilla.redhat.com/show_bug.cgi?id=2258677 https://bugzilla.redhat.com/show_bug.cgi?id=2258688 https://bugzilla.redhat.com/show_bug.cgi?id=2258691 https://bugzilla.redhat.com/show_bug.cgi?id=2258694 https://bugzilla.redhat.com/show_bug.cgi?id=2258700 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-36763 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-36764 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3446 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45229 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45231 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45232 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45233 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45235 https://errata.almalinux.org/9/ALSA-2024-2447.html https://errata.rockylinux.org/RLSA-2024:2264 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=1fa20cf2f506113c761777127a38bce5068740eb https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=8780a896543a654e757db1b9396383f9d8095528 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=9a0a4d3c1e7138915563c0df4fe6a3f9377b839c https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=fc9867c1e03c22ebf56943be205202e576aabf23 https://linux.oracle.com/cve/CVE-2023-3446.html https://linux.oracle.com/errata/ELSA-2024-2447.html https://nvd.nist.gov/vuln/detail/CVE-2023-3446 https://ubuntu.com/security/notices/USN-6435-1 https://ubuntu.com/security/notices/USN-6435-2 https://ubuntu.com/security/notices/USN-6450-1 https://ubuntu.com/security/notices/USN-6709-1 https://ubuntu.com/security/notices/USN-7018-1 https://www.cve.org/CVERecord?id=CVE-2023-3446 https://www.openssl.org/news/secadv/20230719.txt libcrypto1.1 CVE-2023-3817 MEDIUM 1.1.1u-r1 1.1.1v-r0 http://seclists.org/fulldisclosure/2023/Jul/43 http://www.openwall.com/lists/oss-security/2023/07/31/1 https://access.redhat.com/errata/RHSA-2024:2447 https://access.redhat.com/security/cve/CVE-2023-3817 https://bugzilla.redhat.com/2223016 https://bugzilla.redhat.com/2224962 https://bugzilla.redhat.com/2227852 https://bugzilla.redhat.com/2248616 https://bugzilla.redhat.com/2257571 https://bugzilla.redhat.com/2258502 https://bugzilla.redhat.com/2259944 https://errata.almalinux.org/9/ALSA-2024-2447.html https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=6a1eb62c29db6cb5eec707f9338aee00f44e26f5 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=869ad69aadd985c7b8ca6f4e5dd0eb274c9f3644 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=9002fd07327a91f35ba6c1307e71fa6fd4409b7f https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=91ddeba0f2269b017dc06c46c993a788974b1aa5 https://linux.oracle.com/cve/CVE-2023-3817.html https://linux.oracle.com/errata/ELSA-2024-2447.html https://nvd.nist.gov/vuln/detail/CVE-2023-3817 https://ubuntu.com/security/notices/USN-6435-1 https://ubuntu.com/security/notices/USN-6435-2 https://ubuntu.com/security/notices/USN-6450-1 https://ubuntu.com/security/notices/USN-6709-1 https://www.cve.org/CVERecord?id=CVE-2023-3817 https://www.openssl.org/news/secadv/20230731.txt libcrypto1.1 CVE-2023-5678 MEDIUM 1.1.1u-r1 1.1.1w-r1 https://access.redhat.com/errata/RHSA-2024:2447 https://access.redhat.com/security/cve/CVE-2023-5678 https://bugzilla.redhat.com/2223016 https://bugzilla.redhat.com/2224962 https://bugzilla.redhat.com/2227852 https://bugzilla.redhat.com/2248616 https://bugzilla.redhat.com/2257571 https://bugzilla.redhat.com/2258502 https://bugzilla.redhat.com/2259944 https://errata.almalinux.org/9/ALSA-2024-2447.html https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=34efaef6c103d636ab507a0cc34dca4d3aecc055 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=710fee740904b6290fef0dd5536fbcedbc38ff0c https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=db925ae2e65d0d925adef429afc37f75bd1c2017 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=ddeb4b6c6d527e54ce9a99cba785c0f7776e54b6 https://linux.oracle.com/cve/CVE-2023-5678.html https://linux.oracle.com/errata/ELSA-2024-2447.html https://nvd.nist.gov/vuln/detail/CVE-2023-5678 https://ubuntu.com/security/notices/USN-6622-1 https://ubuntu.com/security/notices/USN-6632-1 https://ubuntu.com/security/notices/USN-6709-1 https://www.cve.org/CVERecord?id=CVE-2023-5678 https://www.openssl.org/news/secadv/20231106.txt libssl1.1 CVE-2023-3446 MEDIUM 1.1.1u-r1 1.1.1u-r2 http://www.openwall.com/lists/oss-security/2023/07/19/4 http://www.openwall.com/lists/oss-security/2023/07/19/5 http://www.openwall.com/lists/oss-security/2023/07/19/6 https://access.redhat.com/errata/RHSA-2024:2447 https://access.redhat.com/security/cve/CVE-2023-3446 https://bugzilla.redhat.com/2223016 https://bugzilla.redhat.com/2224962 https://bugzilla.redhat.com/2227852 https://bugzilla.redhat.com/2248616 https://bugzilla.redhat.com/2257571 https://bugzilla.redhat.com/2258502 https://bugzilla.redhat.com/2259944 https://bugzilla.redhat.com/show_bug.cgi?id=2224962 https://bugzilla.redhat.com/show_bug.cgi?id=2257582 https://bugzilla.redhat.com/show_bug.cgi?id=2257583 https://bugzilla.redhat.com/show_bug.cgi?id=2258677 https://bugzilla.redhat.com/show_bug.cgi?id=2258688 https://bugzilla.redhat.com/show_bug.cgi?id=2258691 https://bugzilla.redhat.com/show_bug.cgi?id=2258694 https://bugzilla.redhat.com/show_bug.cgi?id=2258700 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-36763 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-36764 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3446 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45229 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45231 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45232 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45233 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45235 https://errata.almalinux.org/9/ALSA-2024-2447.html https://errata.rockylinux.org/RLSA-2024:2264 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=1fa20cf2f506113c761777127a38bce5068740eb https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=8780a896543a654e757db1b9396383f9d8095528 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=9a0a4d3c1e7138915563c0df4fe6a3f9377b839c https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=fc9867c1e03c22ebf56943be205202e576aabf23 https://linux.oracle.com/cve/CVE-2023-3446.html https://linux.oracle.com/errata/ELSA-2024-2447.html https://nvd.nist.gov/vuln/detail/CVE-2023-3446 https://ubuntu.com/security/notices/USN-6435-1 https://ubuntu.com/security/notices/USN-6435-2 https://ubuntu.com/security/notices/USN-6450-1 https://ubuntu.com/security/notices/USN-6709-1 https://ubuntu.com/security/notices/USN-7018-1 https://www.cve.org/CVERecord?id=CVE-2023-3446 https://www.openssl.org/news/secadv/20230719.txt libssl1.1 CVE-2023-3817 MEDIUM 1.1.1u-r1 1.1.1v-r0 http://seclists.org/fulldisclosure/2023/Jul/43 http://www.openwall.com/lists/oss-security/2023/07/31/1 https://access.redhat.com/errata/RHSA-2024:2447 https://access.redhat.com/security/cve/CVE-2023-3817 https://bugzilla.redhat.com/2223016 https://bugzilla.redhat.com/2224962 https://bugzilla.redhat.com/2227852 https://bugzilla.redhat.com/2248616 https://bugzilla.redhat.com/2257571 https://bugzilla.redhat.com/2258502 https://bugzilla.redhat.com/2259944 https://errata.almalinux.org/9/ALSA-2024-2447.html https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=6a1eb62c29db6cb5eec707f9338aee00f44e26f5 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=869ad69aadd985c7b8ca6f4e5dd0eb274c9f3644 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=9002fd07327a91f35ba6c1307e71fa6fd4409b7f https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=91ddeba0f2269b017dc06c46c993a788974b1aa5 https://linux.oracle.com/cve/CVE-2023-3817.html https://linux.oracle.com/errata/ELSA-2024-2447.html https://nvd.nist.gov/vuln/detail/CVE-2023-3817 https://ubuntu.com/security/notices/USN-6435-1 https://ubuntu.com/security/notices/USN-6435-2 https://ubuntu.com/security/notices/USN-6450-1 https://ubuntu.com/security/notices/USN-6709-1 https://www.cve.org/CVERecord?id=CVE-2023-3817 https://www.openssl.org/news/secadv/20230731.txt libssl1.1 CVE-2023-5678 MEDIUM 1.1.1u-r1 1.1.1w-r1 https://access.redhat.com/errata/RHSA-2024:2447 https://access.redhat.com/security/cve/CVE-2023-5678 https://bugzilla.redhat.com/2223016 https://bugzilla.redhat.com/2224962 https://bugzilla.redhat.com/2227852 https://bugzilla.redhat.com/2248616 https://bugzilla.redhat.com/2257571 https://bugzilla.redhat.com/2258502 https://bugzilla.redhat.com/2259944 https://errata.almalinux.org/9/ALSA-2024-2447.html https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=34efaef6c103d636ab507a0cc34dca4d3aecc055 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=710fee740904b6290fef0dd5536fbcedbc38ff0c https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=db925ae2e65d0d925adef429afc37f75bd1c2017 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=ddeb4b6c6d527e54ce9a99cba785c0f7776e54b6 https://linux.oracle.com/cve/CVE-2023-5678.html https://linux.oracle.com/errata/ELSA-2024-2447.html https://nvd.nist.gov/vuln/detail/CVE-2023-5678 https://ubuntu.com/security/notices/USN-6622-1 https://ubuntu.com/security/notices/USN-6632-1 https://ubuntu.com/security/notices/USN-6709-1 https://www.cve.org/CVERecord?id=CVE-2023-5678 https://www.openssl.org/news/secadv/20231106.txt python3 CVE-2023-6597 HIGH 3.10.12-r0 3.10.14-r0 http://www.openwall.com/lists/oss-security/2024/03/20/5 https://access.redhat.com/errata/RHSA-2024:4078 https://access.redhat.com/security/cve/CVE-2023-6597 https://bugzilla.redhat.com/2276518 https://bugzilla.redhat.com/2276525 https://bugzilla.redhat.com/show_bug.cgi?id=2276518 https://bugzilla.redhat.com/show_bug.cgi?id=2276525 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-6597 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-0450 https://discuss.python.org/t/python-3-10-14-3-9-19-and-3-8-19-is-now-available/48993 https://errata.almalinux.org/9/ALSA-2024-4078.html https://errata.rockylinux.org/RLSA-2024:4078 https://github.com/advisories/GHSA-797f-63wg-8chv https://github.com/python/cpython/commit/02a9259c717738dfe6b463c44d7e17f2b6d2cb3a https://github.com/python/cpython/commit/5585334d772b253a01a6730e8202ffb1607c3d25 https://github.com/python/cpython/commit/6ceb8aeda504b079fef7a57b8d81472f15cdd9a5 https://github.com/python/cpython/commit/81c16cd94ec38d61aa478b9a452436dc3b1b524d https://github.com/python/cpython/commit/8eaeefe49d179ca4908d052745e3bb8b6f238f82 https://github.com/python/cpython/commit/d54e22a669ae6e987199bb5d2c69bb5a46b0083b https://github.com/python/cpython/issues/91133 https://linux.oracle.com/cve/CVE-2023-6597.html https://linux.oracle.com/errata/ELSA-2024-4078.html https://lists.debian.org/debian-lts-announce/2024/03/msg00025.html https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/T3IGRX54M7RNCQOXVQO5KQKTGWCOABIM/ https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/U5VHWS52HGD743C47UMCSAK2A773M2YE/ https://mail.python.org/archives/list/security-announce@python.org/thread/Q5C6ATFC67K53XFV4KE45325S7NS62LD/ https://nvd.nist.gov/vuln/detail/CVE-2023-6597 https://seclists.org/oss-sec/2024/q1/240 https://ubuntu.com/security/notices/USN-6891-1 https://www.cve.org/CVERecord?id=CVE-2023-6597 python3 CVE-2023-40217 MEDIUM 3.10.12-r0 3.10.13-r0 https://access.redhat.com/errata/RHSA-2023:5462 https://access.redhat.com/security/cve/CVE-2023-40217 https://bugzilla.redhat.com/2235789 https://bugzilla.redhat.com/show_bug.cgi?id=2235789 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-40217 https://errata.almalinux.org/9/ALSA-2023-5462.html https://errata.rockylinux.org/RLSA-2023:5997 https://github.com/python/cpython/commit/0cb0c238d520a8718e313b52cffc356a5a7561bf (main) https://github.com/python/cpython/commit/256586ab8776e4526ca594b4866b9a3492e628f1 (3.12) https://github.com/python/cpython/commit/264b1dacc67346efa0933d1e63f622676e0ed96b (3.9) https://github.com/python/cpython/commit/37d7180cb647f0bed0c1caab0037f3bc82e2af96 (3.10) https://github.com/python/cpython/commit/75a875e0df0530b75b1470d797942f90f4a718d3 (3.11) https://github.com/python/cpython/issues/108310 https://github.com/python/cpython/pull/108315 https://linux.oracle.com/cve/CVE-2023-40217.html https://linux.oracle.com/errata/ELSA-2023-6885.html https://lists.debian.org/debian-lts-announce/2023/09/msg00022.html https://lists.debian.org/debian-lts-announce/2023/10/msg00017.html https://mail.python.org/archives/list/security-announce%40python.org/thread/PEPLII27KYHLF4AK3ZQGKYNCRERG4YXY/ https://mail.python.org/archives/list/security-announce@python.org/thread/PEPLII27KYHLF4AK3ZQGKYNCRERG4YXY/ https://nvd.nist.gov/vuln/detail/CVE-2023-40217 https://security.netapp.com/advisory/ntap-20231006-0014/ https://ubuntu.com/security/notices/USN-6513-1 https://ubuntu.com/security/notices/USN-6513-2 https://ubuntu.com/security/notices/USN-6891-1 https://www.cve.org/CVERecord?id=CVE-2023-40217 https://www.python.org/dev/security/ python3 CVE-2024-0450 MEDIUM 3.10.12-r0 3.10.14-r0 http://www.openwall.com/lists/oss-security/2024/03/20/5 https://access.redhat.com/errata/RHSA-2024:9192 https://access.redhat.com/security/cve/CVE-2024-0450 https://bugzilla.redhat.com/2276525 https://bugzilla.redhat.com/2307370 https://bugzilla.redhat.com/show_bug.cgi?id=2276518 https://bugzilla.redhat.com/show_bug.cgi?id=2276525 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-6597 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-0450 https://discuss.python.org/t/python-3-10-14-3-9-19-and-3-8-19-is-now-available/48993 https://errata.almalinux.org/9/ALSA-2024-9192.html https://errata.rockylinux.org/RLSA-2024:4078 https://github.com/python/cpython/commit/30fe5d853b56138dbec62432d370a1f99409fc85 https://github.com/python/cpython/commit/66363b9a7b9fe7c99eba3a185b74c5fdbf842eba https://github.com/python/cpython/commit/70497218351ba44bffc8b571201ecb5652d84675 https://github.com/python/cpython/commit/a2c59992e9e8d35baba9695eb186ad6c6ff85c51 https://github.com/python/cpython/commit/a956e510f6336d5ae111ba429a61c3ade30a7549 https://github.com/python/cpython/commit/d05bac0b74153beb541b88b4fca33bf053990183 https://github.com/python/cpython/commit/fa181fcf2156f703347b03a3b1966ce47be8ab3b https://github.com/python/cpython/issues/109858 https://linux.oracle.com/cve/CVE-2024-0450.html https://linux.oracle.com/errata/ELSA-2024-9192.html https://lists.debian.org/debian-lts-announce/2024/03/msg00024.html https://lists.debian.org/debian-lts-announce/2024/03/msg00025.html https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/T3IGRX54M7RNCQOXVQO5KQKTGWCOABIM/ https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/U5VHWS52HGD743C47UMCSAK2A773M2YE/ https://mail.python.org/archives/list/security-announce@python.org/thread/XELNUX2L3IOHBTFU7RQHCY6OUVEWZ2FG/ https://nvd.nist.gov/vuln/detail/CVE-2024-0450 https://seclists.org/oss-sec/2024/q1/240 https://ubuntu.com/security/notices/USN-6891-1 https://www.bamsoftware.com/hacks/zipbomb/ https://www.cve.org/CVERecord?id=CVE-2024-0450 sqlite-libs CVE-2023-7104 HIGH 3.40.1-r0 3.40.1-r1 https://access.redhat.com/errata/RHSA-2024:0465 https://access.redhat.com/security/cve/CVE-2023-7104 https://bugzilla.redhat.com/2256194 https://bugzilla.redhat.com/show_bug.cgi?id=2256194 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-7104 https://errata.almalinux.org/9/ALSA-2024-0465.html https://errata.rockylinux.org/RLSA-2024:0253 https://linux.oracle.com/cve/CVE-2023-7104.html https://linux.oracle.com/errata/ELSA-2024-0465.html https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/AYONA2XSNFMXLAW4IHLFI5UVV3QRNG5K/ https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/D6C2HN4T2S6GYNTAUXLH45LQZHK7QPHP/ https://nvd.nist.gov/vuln/detail/CVE-2023-7104 https://security.netapp.com/advisory/ntap-20240112-0008/ https://sqlite.org/forum/forumpost/5bcbf4571c https://sqlite.org/src/info/0e4e7a05c4204b47 https://ubuntu.com/security/notices/USN-6566-1 https://ubuntu.com/security/notices/USN-6566-2 https://vuldb.com/?ctiid.248999 https://vuldb.com/?id.248999 https://www.cve.org/CVERecord?id=CVE-2023-7104 ssl_client CVE-2023-42366 MEDIUM 1.35.0-r17 1.35.0-r18 https://access.redhat.com/security/cve/CVE-2023-42366 https://bugs.busybox.net/show_bug.cgi?id=15874 https://nvd.nist.gov/vuln/detail/CVE-2023-42366 https://www.cve.org/CVERecord?id=CVE-2023-42366 No Misconfigurations found Python (python-pkg)¶ Package Vulnerability ID Severity Installed Version Fixed Version Links pip CVE-2023-5752 MEDIUM 22.1.1 23.3 https://access.redhat.com/security/cve/CVE-2023-5752 https://github.com/pypa/advisory-database/tree/main/vulns/pip/PYSEC-2023-228.yaml https://github.com/pypa/pip https://github.com/pypa/pip/commit/389cb799d0da9a840749fcd14878928467ed49b4 https://github.com/pypa/pip/pull/12306 https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/622OZXWG72ISQPLM5Y57YCVIMWHD4C3U https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/622OZXWG72ISQPLM5Y57YCVIMWHD4C3U/ https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/65UKKF5LBHEFDCUSPBHUN4IHYX7SRMHH https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/65UKKF5LBHEFDCUSPBHUN4IHYX7SRMHH/ https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FXUVMJM25PUAZRQZBF54OFVKTY3MINPW https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FXUVMJM25PUAZRQZBF54OFVKTY3MINPW/ https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/KFC2SPFG5FLCZBYY2K3T5MFW2D22NG6E https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/KFC2SPFG5FLCZBYY2K3T5MFW2D22NG6E/ https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YBSB3SUPQ3VIFYUMHPO3MEQI4BJAXKCZ https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YBSB3SUPQ3VIFYUMHPO3MEQI4BJAXKCZ/ https://mail.python.org/archives/list/security-announce@python.org/thread/F4PL35U6X4VVHZ5ILJU3PWUWN7H7LZXL https://mail.python.org/archives/list/security-announce@python.org/thread/F4PL35U6X4VVHZ5ILJU3PWUWN7H7LZXL/ https://nvd.nist.gov/vuln/detail/CVE-2023-5752 https://www.cve.org/CVERecord?id=CVE-2023-5752 setuptools CVE-2022-40897 HIGH 59.4.0 65.5.1 https://access.redhat.com/errata/RHSA-2023:0952 https://access.redhat.com/security/cve/CVE-2022-40897 https://bugzilla.redhat.com/2158559 https://bugzilla.redhat.com/show_bug.cgi?id=2158559 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-40897 https://errata.almalinux.org/9/ALSA-2023-0952.html https://errata.rockylinux.org/RLSA-2023:0952 https://github.com/pypa/advisory-database/tree/main/vulns/setuptools/PYSEC-2022-43012.yaml https://github.com/pypa/setuptools https://github.com/pypa/setuptools/blob/fe8a98e696241487ba6ac9f91faa38ade939ec5d/setuptools/package_index.py#L200 https://github.com/pypa/setuptools/commit/43a9c9bfa6aa626ec2a22540bea28d2ca77964be https://github.com/pypa/setuptools/compare/v65.5.0...v65.5.1 https://github.com/pypa/setuptools/issues/3659 https://linux.oracle.com/cve/CVE-2022-40897.html https://linux.oracle.com/errata/ELSA-2024-2987.html https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ADES3NLOE5QJKBLGNZNI2RGVOSQXA37R https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ADES3NLOE5QJKBLGNZNI2RGVOSQXA37R/ https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YNA2BAH2ACBZ4TVJZKFLCR7L23BG5C3H https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YNA2BAH2ACBZ4TVJZKFLCR7L23BG5C3H/ https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ADES3NLOE5QJKBLGNZNI2RGVOSQXA37R https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YNA2BAH2ACBZ4TVJZKFLCR7L23BG5C3H https://nvd.nist.gov/vuln/detail/CVE-2022-40897 https://pyup.io/posts/pyup-discovers-redos-vulnerabilities-in-top-python-packages https://pyup.io/posts/pyup-discovers-redos-vulnerabilities-in-top-python-packages/ https://pyup.io/vulnerabilities/CVE-2022-40897/52495 https://pyup.io/vulnerabilities/CVE-2022-40897/52495/ https://security.netapp.com/advisory/ntap-20230214-0001 https://security.netapp.com/advisory/ntap-20230214-0001/ https://security.netapp.com/advisory/ntap-20240621-0006 https://security.netapp.com/advisory/ntap-20240621-0006/ https://setuptools.pypa.io/en/latest https://ubuntu.com/security/notices/USN-5817-1 https://www.cve.org/CVERecord?id=CVE-2022-40897 setuptools CVE-2024-6345 HIGH 59.4.0 70.0.0 https://access.redhat.com/errata/RHSA-2024:6726 https://access.redhat.com/security/cve/CVE-2024-6345 https://bugzilla.redhat.com/2297771 https://bugzilla.redhat.com/show_bug.cgi?id=2297771 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-6345 https://errata.almalinux.org/9/ALSA-2024-6726.html https://errata.rockylinux.org/RLSA-2024:6726 https://github.com/pypa/setuptools https://github.com/pypa/setuptools/commit/88807c7062788254f654ea8c03427adc859321f0 https://github.com/pypa/setuptools/pull/4332 https://huntr.com/bounties/d6362117-ad57-4e83-951f-b8141c6e7ca5 https://linux.oracle.com/cve/CVE-2024-6345.html https://linux.oracle.com/errata/ELSA-2024-6726.html https://nvd.nist.gov/vuln/detail/CVE-2024-6345 https://ubuntu.com/security/notices/USN-7002-1 https://www.cve.org/CVERecord?id=CVE-2024-6345 No Misconfigurations found