python2.7 vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the python2.7 package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • M
Resource Exhaustion

<2.7.17-1~18.04ubuntu1.13+esm4
  • M
CVE-2023-40217

<2.7.17-1~18.04ubuntu1.13+esm4
  • M
XML External Entity (XXE) Injection

<2.7.17-1~18.04ubuntu1.13+esm1
  • M
Use After Free

<2.7.17-1~18.04ubuntu1.13+esm3
  • M
Race Condition

<2.7.17-1~18.04ubuntu1.13+esm2
  • M
Improper Input Validation

*
  • M
Improper Input Validation

*
  • M
Algorithmic Complexity

<2.7.17-1~18.04ubuntu1.10
  • L
Arbitrary Command Injection

<2.7.17-1~18.04ubuntu1.8
  • M
Arbitrary Code Injection

<2.7.17-1~18.04ubuntu1.7
  • M
Unchecked Return Value

<2.7.17-1~18.04ubuntu1.7
  • M
Buffer Overflow

<2.7.17-1~18.04ubuntu1.6
  • L
Incorrect Calculation

<2.7.17-1~18.04ubuntu1.1
  • M
Improper Input Validation

<2.7.17-1~18.04ubuntu1.1
  • L
Resource Exhaustion

<2.7.17-1~18.04ubuntu1.1
  • L
Resource Exhaustion

<2.7.17-1~18.04ubuntu1
  • M
Arbitrary Code Injection

<2.7.17-1~18.04ubuntu1
  • L
Cross-site Scripting (XSS)

<2.7.15-4ubuntu4~18.04.2
  • M
CVE-2019-16056

<2.7.15-4ubuntu4~18.04.2
  • M
Improper Input Validation

<2.7.15-4ubuntu4~18.04.1
  • M
Credentials Management

<2.7.15-4ubuntu4~18.04.1
  • M
CRLF Injection

<2.7.15-4ubuntu4~18.04.1
  • M
Directory Traversal

<2.7.15-4ubuntu4~18.04.1
  • M
CRLF Injection

<2.7.15-4ubuntu4~18.04.1
  • M
CVE-2019-9636

<2.7.15-4ubuntu4~18.04.1
  • L
NULL Pointer Dereference

<2.7.15-4ubuntu4~18.04.1
  • M
Arbitrary Command Injection

<2.7.15~rc1-1ubuntu0.1
  • M
Missing Initialization of Resource

<2.7.15~rc1-1ubuntu0.1