RHSA-2020:1325: Moderate: python-XStatic-jQuery security update
python-XStatic-jQuery is the jQuery javascript library packaged for Python's setuptoolsSecurity Fix(es): prototype pollution in object's prototype leading to denial of service or remote code execution or property injection (CVE-2019-11358)For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVEpage listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:1325?
The severity of RHSA-2020:1325 is classified as moderate.
What vulnerabilities does RHSA-2020:1325 address?
RHSA-2020:1325 addresses a prototype pollution vulnerability leading to denial of service, remote code execution, or property injection as identified in CVE-2019-11358.
How do I fix RHSA-2020:1325?
To fix RHSA-2020:1325, you need to update the python-XStatic-jQuery package to the patched version provided in the security advisory.
What is prototype pollution in RHSA-2020:1325?
Prototype pollution in RHSA-2020:1325 refers to the manipulation of an object's prototype to inject properties, which can lead to security vulnerabilities.
Is RHSA-2020:1325 applicable to all users?
RHSA-2020:1325 is applicable to users of the python-XStatic-jQuery library who are at risk of the identified vulnerabilities.