{"affected":[{"ecosystem_specific":{"binaries":[{"python-32bit":"2.6.9-39.1","python-demo":"2.6.9-39.1","python-devel":"2.6.9-39.1","python-doc":"2.6-8.39.1","python-doc-pdf":"2.6-8.39.1","python-gdbm":"2.6.9-39.1","python-idle":"2.6.9-39.1","python-tk":"2.6.9-39.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Software Development Kit 11 SP4","name":"python","purl":"pkg:rpm/suse/python&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.6.9-39.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"python-32bit":"2.6.9-39.1","python-demo":"2.6.9-39.1","python-devel":"2.6.9-39.1","python-doc":"2.6-8.39.1","python-doc-pdf":"2.6-8.39.1","python-gdbm":"2.6.9-39.1","python-idle":"2.6.9-39.1","python-tk":"2.6.9-39.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Software Development Kit 11 SP4","name":"python-base","purl":"pkg:rpm/suse/python-base&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.6.9-39.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"python-32bit":"2.6.9-39.1","python-demo":"2.6.9-39.1","python-devel":"2.6.9-39.1","python-doc":"2.6-8.39.1","python-doc-pdf":"2.6-8.39.1","python-gdbm":"2.6.9-39.1","python-idle":"2.6.9-39.1","python-tk":"2.6.9-39.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Software Development Kit 11 SP4","name":"python-doc","purl":"pkg:rpm/suse/python-doc&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.6-8.39.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libpython2_6-1_0":"2.6.9-39.1","libpython2_6-1_0-32bit":"2.6.9-39.1","libpython2_6-1_0-x86":"2.6.9-39.1","python":"2.6.9-39.1","python-32bit":"2.6.9-39.1","python-base":"2.6.9-39.1","python-base-32bit":"2.6.9-39.1","python-base-x86":"2.6.9-39.1","python-curses":"2.6.9-39.1","python-demo":"2.6.9-39.1","python-doc":"2.6-8.39.1","python-doc-pdf":"2.6-8.39.1","python-gdbm":"2.6.9-39.1","python-idle":"2.6.9-39.1","python-tk":"2.6.9-39.1","python-x86":"2.6.9-39.1","python-xml":"2.6.9-39.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 11 SP4","name":"python","purl":"pkg:rpm/suse/python&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.6.9-39.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libpython2_6-1_0":"2.6.9-39.1","libpython2_6-1_0-32bit":"2.6.9-39.1","libpython2_6-1_0-x86":"2.6.9-39.1","python":"2.6.9-39.1","python-32bit":"2.6.9-39.1","python-base":"2.6.9-39.1","python-base-32bit":"2.6.9-39.1","python-base-x86":"2.6.9-39.1","python-curses":"2.6.9-39.1","python-demo":"2.6.9-39.1","python-doc":"2.6-8.39.1","python-doc-pdf":"2.6-8.39.1","python-gdbm":"2.6.9-39.1","python-idle":"2.6.9-39.1","python-tk":"2.6.9-39.1","python-x86":"2.6.9-39.1","python-xml":"2.6.9-39.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 11 SP4","name":"python-base","purl":"pkg:rpm/suse/python-base&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.6.9-39.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libpython2_6-1_0":"2.6.9-39.1","libpython2_6-1_0-32bit":"2.6.9-39.1","libpython2_6-1_0-x86":"2.6.9-39.1","python":"2.6.9-39.1","python-32bit":"2.6.9-39.1","python-base":"2.6.9-39.1","python-base-32bit":"2.6.9-39.1","python-base-x86":"2.6.9-39.1","python-curses":"2.6.9-39.1","python-demo":"2.6.9-39.1","python-doc":"2.6-8.39.1","python-doc-pdf":"2.6-8.39.1","python-gdbm":"2.6.9-39.1","python-idle":"2.6.9-39.1","python-tk":"2.6.9-39.1","python-x86":"2.6.9-39.1","python-xml":"2.6.9-39.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 11 SP4","name":"python-doc","purl":"pkg:rpm/suse/python-doc&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.6-8.39.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libpython2_6-1_0":"2.6.9-39.1","libpython2_6-1_0-32bit":"2.6.9-39.1","libpython2_6-1_0-x86":"2.6.9-39.1","python":"2.6.9-39.1","python-32bit":"2.6.9-39.1","python-base":"2.6.9-39.1","python-base-32bit":"2.6.9-39.1","python-base-x86":"2.6.9-39.1","python-curses":"2.6.9-39.1","python-demo":"2.6.9-39.1","python-doc":"2.6-8.39.1","python-doc-pdf":"2.6-8.39.1","python-gdbm":"2.6.9-39.1","python-idle":"2.6.9-39.1","python-tk":"2.6.9-39.1","python-x86":"2.6.9-39.1","python-xml":"2.6.9-39.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 11 SP4","name":"python","purl":"pkg:rpm/suse/python&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2011%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.6.9-39.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libpython2_6-1_0":"2.6.9-39.1","libpython2_6-1_0-32bit":"2.6.9-39.1","libpython2_6-1_0-x86":"2.6.9-39.1","python":"2.6.9-39.1","python-32bit":"2.6.9-39.1","python-base":"2.6.9-39.1","python-base-32bit":"2.6.9-39.1","python-base-x86":"2.6.9-39.1","python-curses":"2.6.9-39.1","python-demo":"2.6.9-39.1","python-doc":"2.6-8.39.1","python-doc-pdf":"2.6-8.39.1","python-gdbm":"2.6.9-39.1","python-idle":"2.6.9-39.1","python-tk":"2.6.9-39.1","python-x86":"2.6.9-39.1","python-xml":"2.6.9-39.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 11 SP4","name":"python-base","purl":"pkg:rpm/suse/python-base&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2011%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.6.9-39.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libpython2_6-1_0":"2.6.9-39.1","libpython2_6-1_0-32bit":"2.6.9-39.1","libpython2_6-1_0-x86":"2.6.9-39.1","python":"2.6.9-39.1","python-32bit":"2.6.9-39.1","python-base":"2.6.9-39.1","python-base-32bit":"2.6.9-39.1","python-base-x86":"2.6.9-39.1","python-curses":"2.6.9-39.1","python-demo":"2.6.9-39.1","python-doc":"2.6-8.39.1","python-doc-pdf":"2.6-8.39.1","python-gdbm":"2.6.9-39.1","python-idle":"2.6.9-39.1","python-tk":"2.6.9-39.1","python-x86":"2.6.9-39.1","python-xml":"2.6.9-39.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 11 SP4","name":"python-doc","purl":"pkg:rpm/suse/python-doc&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2011%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.6-8.39.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"\nThis update for python fixes the following issues:\n\n- CVE-2016-0772: smtplib vulnerability opens startTLS stripping attack (bsc#984751)\n- CVE-2016-5699: incorrect validation of HTTP headers allow header injection (bsc#985348)\n- CVE-2016-1000110: HTTPoxy vulnerability in urllib, fixed by disregarding HTTP_PROXY\n  when REQUEST_METHOD is also set (bsc#989523)\n","id":"SUSE-SU-2016:2270-1","modified":"2016-09-09T06:13:10Z","published":"2016-09-09T06:13:10Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2016/suse-su-20162270-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/984751"},{"type":"REPORT","url":"https://bugzilla.suse.com/985348"},{"type":"REPORT","url":"https://bugzilla.suse.com/989523"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0772"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-1000110"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-5699"}],"related":["CVE-2016-0772","CVE-2016-1000110","CVE-2016-5699"],"summary":"Security update for python","upstream":["CVE-2016-0772","CVE-2016-1000110","CVE-2016-5699"]}