rpm package
opensuse/python-sh&distro=openSUSE Tumbleweed
pkg:rpm/opensuse/python-sh&distro=openSUSE%20Tumbleweed
Vulnerabilities (1)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-54552 | Hig | 7.9 | < 2.3.0-1.1 | 2.3.0-1.1 | Aug 18, 2026 | sh provides Python process launching. Prior to 2.2.4, the _uid option in sh.py performs an incomplete privilege drop on Linux and Unix-like systems. When sh runs from an elevated process and launches a command with _uid set to an unprivileged user, the child changes its UID but c |
- affected < 2.3.0-1.1fixed 2.3.0-1.1
sh provides Python process launching. Prior to 2.2.4, the _uid option in sh.py performs an incomplete privilege drop on Linux and Unix-like systems. When sh runs from an elevated process and launches a command with _uid set to an unprivileged user, the child changes its UID but c