FlawAtlas
Search the atlas
SUSE-SU-2015:2156-1 Not scored

Security update for python-requests

python-requests was updated to fix one security issue. This security issue was fixed: - CVE-2015-2296: The resolve_redirects function in sessions.py allowed remote attackers to conduct session fixation attacks via a cookie without a host value in a redirect. (bsc#922448) This non-security issue was fixed: - Don't use the hardcoded path for certificates. (bsc#935252)

Exploit probability Not scored
Published November 30, 2015
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:OpenStack Cloud 5 python-requests

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2015:2156-1

python-requests was updated to fix one security issue. This security issue was fixed: - CVE-2015-2296: The resolve_redirects function in sessions.py allowed remote attackers to conduct session fixation attacks via a cookie without a host value in a redirect. (bsc#922448) This non-security issue was fixed: - Don't use the hardcoded path for certificates. (bsc#935252)

View original source

05 / REFERENCES

Further evidence