rpm package
suse/python-google-resumable-media&distro=SUSE Linux Enterprise Module for Public Cloud 15 SP6
pkg:rpm/suse/python-google-resumable-media&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP6
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2023-29483 | Hig | 7.0 | < 2.8.0-150400.10.9.2 | 2.8.0-150400.10.9.2 | Apr 11, 2024 | eventlet before 0.35.2, as used in dnspython before 2.6.0, allows remote attackers to interfere with DNS name resolution by quickly sending an invalid packet from the expected IP address and source port, aka a "TuDoor" attack. In other words, dnspython does not have the preferred | |
| CVE-2023-30608 | Med | 5.5 | < 2.7.0-150400.10.4.1 | 2.7.0-150400.10.4.1 | Apr 18, 2023 | sqlparse is a non-validating SQL parser module for Python. In affected versions the SQL parser contains a regular expression that is vulnerable to ReDoS (Regular Expression Denial of Service). This issue was introduced by commit `e75e358`. The vulnerability may lead to Denial of |
- affected < 2.8.0-150400.10.9.2fixed 2.8.0-150400.10.9.2
eventlet before 0.35.2, as used in dnspython before 2.6.0, allows remote attackers to interfere with DNS name resolution by quickly sending an invalid packet from the expected IP address and source port, aka a "TuDoor" attack. In other words, dnspython does not have the preferred
- affected < 2.7.0-150400.10.4.1fixed 2.7.0-150400.10.4.1
sqlparse is a non-validating SQL parser module for Python. In affected versions the SQL parser contains a regular expression that is vulnerable to ReDoS (Regular Expression Denial of Service). This issue was introduced by commit `e75e358`. The vulnerability may lead to Denial of