← Search the atlas
SUSE-SU-2019:1439-1
Not scored
Security update for python
This update for python fixes the following issues:
Security issues fixed:
- CVE-2019-9948: Fixed a 'file:' blacklist bypass in URIs by using the 'local-file:' scheme instead (bsc#1130847).
- CVE-2019-9636: Fixed an information disclosure because of incorrect handling of Unicode encoding during NFKC normalization (bsc#1129346).
Exploit probability
Not scored
Published
June 6, 2019
Required by
Not available
Last source change
February 4, 2026
02 / AFFECTED SOFTWARE
Affected packages
SUSE:Linux Enterprise Server for SAP Applications 12 SP3
python-doc
SUSE:Linux Enterprise Server for SAP Applications 12 SP3
python
SUSE:Linux Enterprise Server for SAP Applications 12 SP4
python
SUSE:Linux Enterprise Desktop 12 SP4
python-base
SUSE:Linux Enterprise Server for SAP Applications 12 SP1
python
SUSE:Linux Enterprise Server 12 SP3
python
SUSE:Linux Enterprise Server for SAP Applications 12 SP4
python-doc
SUSE:Linux Enterprise Desktop 12 SP3
python
SUSE:Enterprise Storage 4
python
SUSE:OpenStack Cloud 7
python
SUSE:Linux Enterprise Server for SAP Applications 12 SP1
python-base
SUSE:Enterprise Storage 4
python-base
SUSE:Linux Enterprise Server 12 SP2-LTSS
python-base
SUSE:Linux Enterprise Server 12 SP3
python-base
SUSE:Linux Enterprise Server for SAP Applications 12 SP2
python
SUSE:Linux Enterprise Server 12 SP4
python-base
SUSE:Linux Enterprise Server 12 SP2-BCL
python-base
SUSE:Linux Enterprise Server 12 SP1-LTSS
python-base
SUSE:Linux Enterprise Workstation Extension 12 SP4
python-base
SUSE:Linux Enterprise Server 12 SP1-LTSS
python-doc
SUSE:OpenStack Cloud 7
python-base
SUSE:OpenStack Cloud 7
python-doc
SUSE:Linux Enterprise Server for SAP Applications 12 SP4
python-base
SUSE:Linux Enterprise Software Development Kit 12 SP3
python-base
SUSE:Linux Enterprise Server 12 SP2-LTSS
python-doc
SUSE:Linux Enterprise Server 12 SP3
python-doc
SUSE:Linux Enterprise Server for SAP Applications 12 SP2
python-doc
SUSE:Linux Enterprise Server 12 SP1-LTSS
python
SUSE:Enterprise Storage 5
python
SUSE:Linux Enterprise Server for SAP Applications 12 SP2
python-base
SUSE:Linux Enterprise Desktop 12 SP4
python
SUSE:Linux Enterprise Server for SAP Applications 12 SP3
python-base
SUSE:Linux Enterprise Server for SAP Applications 12 SP1
python-doc
SUSE:Linux Enterprise Server 12 SP4
python
SUSE:Enterprise Storage 4
python-doc
SUSE:Linux Enterprise Desktop 12 SP3
python-base
SUSE:Linux Enterprise Server 12 SP4
python-doc
SUSE:Linux Enterprise Server 12 SP2-LTSS
python
SUSE:Linux Enterprise Workstation Extension 12 SP3
python-base
SUSE:Linux Enterprise Server 12 SP2-BCL
python
SUSE:Linux Enterprise Server 12 SP2-BCL
python-doc
SUSE:Linux Enterprise Software Development Kit 12 SP4
python-base
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
SUSE-SU-2019:1439-1
This update for python fixes the following issues:
Security issues fixed:
- CVE-2019-9948: Fixed a 'file:' blacklist bypass in URIs by using the 'local-file:' scheme instead (bsc#1130847).
- CVE-2019-9636: Fixed an information disclosure because of incorrect handling of Unicode encoding during NFKC normalization (bsc#1129346).
View original source ↗
05 / REFERENCES
Further evidence