Vulnerability Change Records for CVE-2019-10160

Change History

CVE Modified by Red Hat, Inc. 8/15/2019 11:15:12 AM

Action Type Old Value New Value
Added Reference

								
							
							
						
http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00042.html [No Types Assigned]

CVE Modified by Red Hat, Inc. 6/20/2019 7:15:09 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://access.redhat.com/errata/RHSA-2019:1587 [No Types Assigned]

CVE Modified by Red Hat, Inc. 1/21/2020 5:15:14 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00040.html [No Types Assigned]

CVE Modified by Red Hat, Inc. 11/10/2019 10:15:10 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4X3HW5JRZ7GCPSR7UHJOLD7AWLTQCDVR/ [No Types Assigned]

CVE Modified by Red Hat, Inc. 7/28/2019 11:15:10 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/KRYFIMISZ47NTAU3XWZUOFB7CYL62KES/ [No Types Assigned]

CPE Deprecation Remap 1/06/2021 11:11:17 AM

Action Type Old Value New Value
Changed CPE Configuration
OR
     *cpe:2.3:a:python:python:3.6:*:*:*:*:*:*:*
OR
     *cpe:2.3:a:python:python:3.6.0:*:*:*:*:*:*:*

CPE Deprecation Remap 1/06/2021 11:9:34 AM

Action Type Old Value New Value
Changed CPE Configuration
OR
     *cpe:2.3:a:python:python:3.5:*:*:*:*:*:*:*
OR
     *cpe:2.3:a:python:python:3.5.0:*:*:*:*:*:*:*

CPE Deprecation Remap 10/25/2019 7:54:02 AM

Action Type Old Value New Value
Changed CPE Configuration
OR
     *cpe:2.3:a:python:python:2.7:*:*:*:*:*:*:*
OR
     *cpe:2.3:a:python:python:2.7.0:*:*:*:*:*:*:*

CVE Modified by Red Hat, Inc. 9/18/2019 11:15:10 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NF3DRDGMVIRYNZMSLJIHNW47HOUQYXVG/ [No Types Assigned]

CVE Modified by Red Hat, Inc. 10/09/2019 7:44:27 PM

Action Type Old Value New Value
Added CVSS V3

								
							
							
						
Red Hat, Inc. AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Added CWE

								
							
							
						
Red Hat, Inc. CWE-172

CVE Modified by Red Hat, Inc. 7/15/2020 8:15:11 AM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://lists.debian.org/debian-lts-announce/2020/07/msg00011.html [No Types Assigned]

CVE Modified by Red Hat, Inc. 7/29/2020 8:15:16 AM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://lists.apache.org/thread.html/r1b103833cb5bc8466e24ff0ecc5e75b45a705334ab6a444e64e840a0@%3Cissues.bookkeeper.apache.org%3E [No Types Assigned]

CVE Modified by Red Hat, Inc. 8/05/2019 12:15:10 AM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HQEQLXLOCR3SNM3AA5RRYJFQ5AZBYJ4L/ [No Types Assigned]

CVE Modified by Red Hat, Inc. 7/08/2019 1:15:10 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://access.redhat.com/errata/RHSA-2019:1700 [No Types Assigned]

CVE Modified by Red Hat, Inc. 11/09/2019 10:15:10 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JCPGLTTOBB3QEARDX4JOYURP6ELNNA2V/ [No Types Assigned]

CVE Modified by Red Hat, Inc. 7/11/2019 11:15:10 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/44TS66GJMO5H3RLMVZEBGEFTB6O2LJJU/ [No Types Assigned]

CVE Modified by Red Hat, Inc. 6/17/2019 3:15:11 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://security.netapp.com/advisory/ntap-20190617-0003/ [No Types Assigned]

CVE Modified by Red Hat, Inc. 8/22/2020 1:15:16 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://lists.debian.org/debian-lts-announce/2020/08/msg00034.html [No Types Assigned]

CVE Modified by Red Hat, Inc. 8/12/2019 10:15:13 AM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://access.redhat.com/errata/RHSA-2019:2437 [No Types Assigned]

CVE Modified by Red Hat, Inc. 9/18/2019 1:15:15 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://usn.ubuntu.com/4127-1/ [No Types Assigned]

CVE Modified by Red Hat, Inc. 9/10/2019 12:15:11 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://usn.ubuntu.com/4127-2/ [No Types Assigned]

CVE Modified by Red Hat, Inc. 7/12/2019 4:15:11 AM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2ORNTF62QPLMJXIQ7KTZQ2776LMIXEKL/ [No Types Assigned]

Initial Analysis 6/11/2019 1:32:26 PM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:python:python:2.7:*:*:*:*:*:*:*
     *cpe:2.3:a:python:python:3.5:*:*:*:*:*:*:*
     *cpe:2.3:a:python:python:3.6:*:*:*:*:*:*:*
     *cpe:2.3:a:python:python:3.7:*:*:*:*:*:*:*
     *cpe:2.3:a:python:python:*:*:*:*:*:*:*:* versions from (including) 3.8.0a4 up to (including) 3.8.0b1
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
Added CVSS V2

								
							
							
						
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Added CVSS V3

								
							
							
						
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Added CWE

								
							
							
						
CWE-255
Changed Reference Type
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-10160 No Types Assigned
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-10160 Issue Tracking, Third Party Advisory
Changed Reference Type
https://github.com/python/cpython/commit/250b62acc59921d399f0db47db3b462cd6037e09 No Types Assigned
https://github.com/python/cpython/commit/250b62acc59921d399f0db47db3b462cd6037e09 Patch, Third Party Advisory
Changed Reference Type
https://github.com/python/cpython/commit/8d0ef0b5edeae52960c7ed05ae8a12388324f87e No Types Assigned
https://github.com/python/cpython/commit/8d0ef0b5edeae52960c7ed05ae8a12388324f87e Patch, Third Party Advisory
Changed Reference Type
https://github.com/python/cpython/commit/f61599b050c621386a3fc6bc480359e2d3bb93de No Types Assigned
https://github.com/python/cpython/commit/f61599b050c621386a3fc6bc480359e2d3bb93de Patch, Third Party Advisory
Changed Reference Type
https://github.com/python/cpython/commit/fd1771dbdd28709716bd531580c40ae5ed814468 No Types Assigned
https://github.com/python/cpython/commit/fd1771dbdd28709716bd531580c40ae5ed814468 Patch, Third Party Advisory
Changed Reference Type
https://python-security.readthedocs.io/vuln/urlsplit-nfkc-normalization2.html No Types Assigned
https://python-security.readthedocs.io/vuln/urlsplit-nfkc-normalization2.html Third Party Advisory

CVE Modified by Red Hat, Inc. 9/19/2019 12:15:10 AM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/E2HP37NUVLQSBW3J735A2DQDOZ4ZGBLY/ [No Types Assigned]
Added Reference

								
							
							
						
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ER6LONC2B2WYIO56GBQUDU6QTWZDPUNQ/ [No Types Assigned]

CVE Modified by Red Hat, Inc. 6/25/2019 2:15:09 AM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://lists.debian.org/debian-lts-announce/2019/06/msg00022.html [No Types Assigned]

CVE Modified by Red Hat, Inc. 11/09/2019 8:15:11 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/M34WOYCDKTDE5KLUACE2YIEH7D37KHRX/ [No Types Assigned]