witchcraze / NVD_CHECK

1 stars 0 forks source link

CHK NVD : CVE-2021-3426 - 5f4f18da #766

Closed witchcraze closed 2 years ago

witchcraze commented 2 years ago

Update Suggestion - CVE-2021-3426 - Cvss2 : 2.7 Update Suggestion - CVE-2021-3426 - Cvss3 : 5.7

https://github.com/witchcraze/NVD_CHECK/blob/main/Python/CVE-2021-3426.json

- CVE-2021-3426
- Suggested Configration
  - OR
     *cpe:2.3:a:python:python:*:*:*:*:*:*:*:* versions from (including) 3.6.0 up to (excluding) 3.6.14
     *cpe:2.3:a:python:python:*:*:*:*:*:*:*:* versions from (including) 3.7.0 up to (excluding) 3.7.11
     *cpe:2.3:a:python:python:*:*:*:*:*:*:*:* versions from (including) 3.8.0 up to (excluding) 3.8.9
     *cpe:2.3:a:python:python:*:*:*:*:*:*:*:* versions from (including) 3.9.0 up to (excluding) 3.9.3
     ...
     *cpe:2.3:a:python:python:3.10.0:alpha7:*:*:*:*:*:*
- Reference
  - https://bugs.python.org/issue42988
  - https://github.com/python/cpython/blob/v3.11.0a2/Misc/NEWS.d/3.10.0a7.rst
  - https://github.com/python/cpython/blob/v3.6.14/Misc/NEWS.d/3.6.14.rst
  - https://github.com/python/cpython/blob/v3.7.12/Misc/NEWS.d/3.7.11.rst
  - https://github.com/python/cpython/blob/v3.8.9/Misc/NEWS.d/3.8.9.rst
  - https://github.com/python/cpython/blob/v3.9.3/Misc/NEWS.d/3.9.3.rst
- I Checked
  - XXXX
https://nvd.nist.gov/vuln/detail/CVE-2021-3426 URI Start(Ex) Start(Inc) End(Ex) End(Inc)
cpe:/o:redhat:enterprise_linux:8.0
cpe:/o:fedoraproject:fedora:34
cpe:/o:fedoraproject:fedora:33
cpe:/o:fedoraproject:fedora:32
cpe:/o:debian:debian_linux:9.0
cpe:/a:redhat:software_collections:-
cpe:/a:python:python:3.10.0:alpha6
cpe:/a:python:python:3.10.0:alpha5
cpe:/a:python:python:3.10.0:alpha4
cpe:/a:python:python:3.10.0:alpha3
cpe:/a:python:python:3.10.0:alpha2
cpe:/a:python:python:3.10.0:alpha1
cpe:/a:python:python 2.7.18
cpe:/a:python:python 3.6.0 3.6.13
cpe:/a:python:python 3.7.0 3.7.10
cpe:/a:python:python 3.8.0 3.8.8
cpe:/a:python:python 3.9.0 3.9.3
cpe:/a:oracle:zfs_storage_appliance_kit:8.8
cpe:/a:oracle:communications_cloud_native_core_binding_support_function:1.10.0
cpe:/a:netapp:snapcenter:-
cpe:/a:netapp:ontap_select_deploy_administration_utility:-
cpe:/a:netapp:cloud_backup:-
witchcraze commented 2 years ago

2.7系みつからず いくつかのパッチバージョンが1ずれてそう