SUSE-SU-2022:2841-1
Dashboard / Vulnerabilities / SUSE-SU-2022:2841-1
SUSE-SU-2022:2841-1
Summary: Security update for python-PyYAML
Details: This update for python-PyYAML fixes the following issues: - CVE-2020-1747: Fixed an arbitrary code execution issue when parsing an untrusted YAML file with the default loader (bsc#1165439). - CVE-2020-14343: Completed the fix for CVE-2020-1747 (bsc#1174514).
References: https://www.suse.com/support/update/announcement/2022/suse-su-20222841-1/, https://bugzilla.suse.com/1165439, https://bugzilla.suse.com/1174514, https://www.suse.com/security/cve/CVE-2020-14343, https://www.suse.com/security/cve/CVE-2020-1747
Affected packages
Package
Name: python-PyYAML
Purl: pkg:rpm/suse/python-PyYAML&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015
Affected ranges
Type: ECOSYSTEM
Events:
