[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

255227

 
 

909

 
 

198741

 
 

282

Paid content will be excluded from the download.


Download | Alert*


oval:org.secpod.oval:def:3301967
Security update for python-reportlab

oval:org.secpod.oval:def:206070
Security Fix: python-reportlab: code injection in paraparser.py allows code execution For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.

oval:org.secpod.oval:def:508196
Python-reportlab is a library used for generation of PDF documents. Security Fix: python-reportlab: code injection in paraparser.py allows code execution For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE p ...

oval:org.secpod.oval:def:508197
Python-reportlab is a library used for generation of PDF documents. Security Fix: python-reportlab: code injection in paraparser.py allows code execution For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE p ...

oval:org.secpod.oval:def:1507055
[2.5-11] - Do not evaluate unichar element - Resolves: RHEL-7011

oval:org.secpod.oval:def:1507088
[3.4.0-8.1] - python-reportlab: code injection in paraparser.py allows code execution

oval:org.secpod.oval:def:2501196
Python-reportlab is a library used for generation of PDF documents.

oval:org.secpod.oval:def:1701808
paraparser in ReportLab before 3.5.31 allows remote code execution because start_unichar in paraparser.py evaluates untrusted user input in a unichar element in a crafted XML document with 'less thanunichar code="' followed by arbitrary Python code, a similar issue to CVE-2019-17626

oval:org.secpod.oval:def:127561
This is the ReportLab PDF Toolkit. It allows rapid creation of rich PDF documents, and also creation of charts in a variety of bitmap and vector formats.

CWE    1
CWE-91
*CVE
CVE-2019-19450

© SecPod Technologies