A flaw was found in python-pip in the way it handled Unicode separators in git references. A remote attacker could possibly use this issue to install a different revision on a repository. The highest threat from this vulnerability is to data integrity. This is fixed in python-pip version 21.1.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Pip | Pypa | * | 21.1 (excluding) |
Red Hat Enterprise Linux 8 | RedHat | python39:3.9-8050020210811100211.d428a79b | * |
Red Hat Enterprise Linux 8 | RedHat | python39-devel:3.9-8050020210811100211.d428a79b | * |
Red Hat Enterprise Linux 8 | RedHat | python38:3.8-8050020210811101222.e3d35cca | * |
Red Hat Enterprise Linux 8 | RedHat | python38-devel:3.8-8050020210811101222.e3d35cca | * |
Red Hat Enterprise Linux 8 | RedHat | python-pip-0:9.0.3-20.el8 | * |
Red Hat Enterprise Linux 8 | RedHat | python-pip-0:9.0.3-20.el8 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7 | RedHat | rh-python38-babel-0:2.7.0-12.el7 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7 | RedHat | rh-python38-python-0:3.8.11-2.el7 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7 | RedHat | rh-python38-python-cryptography-0:2.8-5.el7 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7 | RedHat | rh-python38-python-jinja2-0:2.10.3-6.el7 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7 | RedHat | rh-python38-python-lxml-0:4.4.1-7.el7 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7 | RedHat | rh-python38-python-pip-0:19.3.1-2.el7 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7 | RedHat | rh-python38-python-urllib3-0:1.25.7-7.el7 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUS | RedHat | rh-python38-babel-0:2.7.0-12.el7 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUS | RedHat | rh-python38-python-0:3.8.11-2.el7 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUS | RedHat | rh-python38-python-cryptography-0:2.8-5.el7 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUS | RedHat | rh-python38-python-jinja2-0:2.10.3-6.el7 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUS | RedHat | rh-python38-python-lxml-0:4.4.1-7.el7 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUS | RedHat | rh-python38-python-pip-0:19.3.1-2.el7 | * |
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUS | RedHat | rh-python38-python-urllib3-0:1.25.7-7.el7 | * |
Python-pip | Ubuntu | bionic | * |
Python-pip | Ubuntu | esm-apps/bionic | * |
Python-pip | Ubuntu | esm-apps/xenial | * |
Python-pip | Ubuntu | groovy | * |
Python-pip | Ubuntu | hirsute | * |
Python-pip | Ubuntu | trusty | * |
Python-pip | Ubuntu | trusty/esm | * |
Python-pip | Ubuntu | upstream | * |
Python-pip | Ubuntu | xenial | * |