First published: Fri Sep 21 2018(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/rh-python36-python | <0:3.6.9-2.el6 | 0:3.6.9-2.el6 |
redhat/rh-python36-python | <0:3.6.9-2.el7 | 0:3.6.9-2.el7 |
Python Python | >=3.4.0<3.7.1 | |
Debian Debian Linux | =8.0 | |
Fedoraproject Fedora | =28 | |
Fedoraproject Fedora | =29 | |
Fedoraproject Fedora | =30 | |
debian/python2.7 | 2.7.18-8+deb11u1 | |
redhat/python | <3.7.1 | 3.7.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2018-20406.
The severity of CVE-2018-20406 is high with a severity value of 7.5.
The affected software versions are Python before 3.7.1 and certain versions of rh-python36-python, python2.7, python3.7, python3.5, python3.6, and python3.4.
To fix CVE-2018-20406, you should update to Python version 3.7.1 or higher.
You can find more information about CVE-2018-20406 at the following references: [https://bugs.python.org/issue34656](https://bugs.python.org/issue34656), [https://github.com/python/cpython/commit/a4ae828ee416a66d8c7bf5ee71d653c2cc6a26dd](https://github.com/python/cpython/commit/a4ae828ee416a66d8c7bf5ee71d653c2cc6a26dd), [http://people.canonical.com/~ubuntu-security/cve/2018/CVE-2018-20406.html](http://people.canonical.com/~ubuntu-security/cve/2018/CVE-2018-20406.html).