Search CVE reports


Toggle filters

21 – 25 of 25 results


CVE-2017-1000246

Negligible priority
Vulnerable

Python package pysaml2 version 4.4.0 and earlier reuses the initialization vector across encryptions in the IDP server, resulting in weak encryption of data.

1 affected package

python-pysaml2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
python-pysaml2 Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2016-10149

Medium priority

Some fixes available 2 of 3

XML External Entity (XXE) vulnerability in PySAML2 4.4.0 and earlier allows remote attackers to read arbitrary files via a crafted SAML XML request or response.

1 affected package

python-pysaml2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
python-pysaml2
Show less packages

CVE-2016-10127

Low priority
Ignored

PySAML2 allows remote attackers to conduct XML external entity (XXE) attacks via a crafted SAML XML request or response.

1 affected package

python-pysaml2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
python-pysaml2 Not affected
Show less packages

CVE-2014-4615

Medium priority

Some fixes available 3 of 4

The notifier middleware in OpenStack PyCADF 0.5.0 and earlier, Telemetry (Ceilometer) 2013.2 before 2013.2.4 and 2014.x before 2014.1.2, Neutron 2014.x before 2014.1.2 and Juno before Juno-2, and Oslo allows remote authenticated...

3 affected packages

ceilometer, neutron, python-pycadf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ceilometer
neutron
python-pycadf
Show less packages

CVE-2010-3494

Medium priority
Needs evaluation

Race condition in the FTPHandler class in ftpserver.py in pyftpdlib before 0.5.2 allows remote attackers to cause a denial of service (daemon outage) by establishing and then immediately closing a TCP connection, leading to the...

1 affected package

python-pyftpdlib

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
python-pyftpdlib Not affected Not affected Not affected Needs evaluation Needs evaluation
Show less packages