[WID-SEC-2022-1501] Python: Schwachstelle ermöglicht Codeausführung CVSS Base Score 8.8 (hoch) CVSS Temporal Score 8.3 (hoch) Remoteangriff ja Datum 21.09.2022 Stand UPDATE 10.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux MacOS X Sonstiges UNIX Windows Produktbeschreibung Python ist eine universelle, üblicherweise interpretierte, höhere Programmiersprache. Produkte UPDATE 09.07.2026 IBM SPSS Modeler UPDATE 06.11.2025 Dell Avamar Dell NetWorker Virtual Edition UPDATE 18.05.2025 SUSE openSUSE UPDATE 13.11.2024 Amazon Linux 2 UPDATE 07.03.2024 Fedora Linux UPDATE 13.12.2023 Red Hat OpenShift Data Foundation <4.12.10 UPDATE 21.11.2023 Oracle Linux UPDATE 07.11.2023 Red Hat Enterprise Linux UPDATE 16.08.2023 Open Source Samba <4.18.6 UPDATE 08.06.2023 SUSE Linux 21.09.2022 Open Source Python Angriff Angriff Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Python ausnutzen, um beliebigen Programmcode auszuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben
A high-severity vulnerability (CVSS Base Score 8.8) in Python allows a remote, anonymous attacker to execute arbitrary code. The advisory lists numerous affected products and operating systems, including Linux, macOS, Windows, and specific versions of SUSE, Red Hat, Fedora, Amazon Linux, Oracle Linux, Samba (<4.18.6), and various Dell and IBM applications, with updates provided between 2022 and 2026. Mitigations are available, though the summary does not specify exact Python version ranges or a singular fixed version.