[WID-SEC-2022-2043] Python: Schwachstelle ermöglicht Denial of Service CVSS Base Score 8.6 (hoch) CVSS Temporal Score 7.5 (hoch) Remoteangriff ja Datum 08.11.2022 Stand UPDATE 29.06.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux MacOS X Sonstiges UNIX Windows Produktbeschreibung Python ist eine universelle, üblicherweise interpretierte, höhere Programmiersprache. Produkte UPDATE 17.12.2025 RESF Rocky Linux UPDATE 09.11.2025 SUSE openSUSE UPDATE 07.05.2024 EMC Avamar Dell NetWorker virtual UPDATE 31.08.2023 Fedora Linux UPDATE 02.08.2023 IBM Spectrum Protect plus <10.1.12.6 UPDATE 06.07.2023 IBM QRadar SIEM 7.5 UPDATE 24.05.2023 Debian Linux UPDATE 21.05.2023 F5 BIG-IP UPDATE 14.03.2023 IBM AIX UPDATE 08.03.2023 Red Hat OpenShift 5 Logging Subsystem Red Hat OpenShift Logging Subsystem 5.4.12 Red Hat OpenShift Logging Subsystem 5.6.3 Red Hat OpenShift Data Foundation 4 UPDATE 22.02.2023 Oracle Linux UPDATE 21.02.2023 Red Hat Enterprise Linux UPDATE 23.01.2023 Amazon Linux 2 UPDATE 11.12.2022 NetApp ActiveIQ Unified Manager UPDATE 08.12.2022 Ubuntu Linux UPDATE 15.11.2022 SUSE Linux 08.11.2022 Open Source Python <3.11.1 Angriff Angriff Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Python ausnutzen, um einen Denial of Service Angriff durchzuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben
A high-severity vulnerability (CVSS 8.6) in Python allows a remote, anonymous attacker to cause a Denial of Service. The vulnerability affects Python versions prior to 3.11.1, and a mitigation is available. Numerous downstream Linux distributions and enterprise products have released updates, as listed in the article.