CVE-2020-14422

Lib/ipaddress.py in Python through 3.8.3 improperly computes hash values in the IPv4Interface and IPv6Interface classes, which might allow a remote attacker to cause a denial of service if an application is affected by the performance of a dictionary containing IPv4Interface or IPv6Interface objects, and this attacker can cause many dictionary entries to be created. This is fixed in: v3.5.10, v3.5.10rc1; v3.6.12; v3.7.9; v3.8.4, v3.8.4rc1, v3.8.5, v3.8.6, v3.8.6rc1; v3.9.0, v3.9.0b4, v3.9.0b5, v3.9.0rc1, v3.9.0rc2.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.9 MEDIUM
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 72%
Affected Products (NVD)
VendorProductVersion
pythonpython
3.0.0 ≤
𝑥
< 3.5.10
pythonpython
3.6.0 ≤
𝑥
< 3.6.12
pythonpython
3.7.0 ≤
𝑥
< 3.7.9
pythonpython
3.8.0 ≤
𝑥
< 3.8.4
opensuseleap
15.1
opensuseleap
15.2
oracleenterprise_manager_ops_center
12.4.0.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
python-ipaddress
bullseye
vulnerable
jessie
postponed
python2.7
bullseye
2.7.18-8+deb11u1
fixed
jessie
postponed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
python2.7
bionic
not-affected
disco
ignored
eoan
ignored
focal
not-affected
groovy
ignored
hirsute
ignored
impish
ignored
jammy
not-affected
kinetic
not-affected
lunar
dne
mantic
dne
noble
dne
trusty
not-affected
xenial
not-affected
python3.4
bionic
dne
eoan
dne
focal
dne
groovy
dne
hirsute
dne
impish
dne
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
trusty
Fixed 3.4.3-1ubuntu1~14.04.7+esm7
released
xenial
dne
python3.5
bionic
dne
eoan
dne
focal
dne
groovy
dne
hirsute
dne
impish
dne
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
trusty
Fixed 3.5.2-2ubuntu0~16.04.4~14.04.1+esm1
released
xenial
Fixed 3.5.2-2ubuntu0~16.04.11
released
python3.6
bionic
Fixed 3.6.9-1~18.04ubuntu1.1
released
eoan
dne
focal
dne
groovy
dne
hirsute
dne
impish
dne
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
trusty
dne
xenial
dne
python3.7
bionic
Fixed 3.7.5-2ubuntu1~18.04.2+esm3
released
eoan
ignored
focal
dne
groovy
dne
hirsute
dne
impish
dne
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
trusty
dne
xenial
dne
python3.8
bionic
Fixed 3.8.0-3ubuntu1~18.04.2+esm2
released
eoan
ignored
focal
Fixed 3.8.2-1ubuntu1.2
released
groovy
Fixed 3.8.4-1
released
hirsute
dne
impish
dne
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
trusty
dne
xenial
dne
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
libpython3_4m1_0
suse enterprise sap 12
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP2
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP3
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP4
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP5
3.4.10-25.52.1
fixed
suse enterprise server 12
3.4.10-25.52.1
fixed
suse enterprise server 12 SP2
3.4.10-25.52.1
fixed
suse enterprise server 12 SP3
3.4.10-25.52.1
fixed
suse enterprise server 12 SP4
3.4.10-25.52.1
fixed
suse enterprise server 12 SP5
3.4.10-25.52.1
fixed
libpython3_6m1_0
suse enterprise desktop 15 SP1
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP2
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP3
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise desktop 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise desktop 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise desktop 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise sap 15 SP1
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP2
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP3
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise sap 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise sap 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise sap 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise server 12 SP3
3.6.8-6.19.1
fixed
suse enterprise server 15
3.6.12-3.67.2
fixed
suse enterprise server 15 SP1
3.6.12-3.67.2
fixed
suse enterprise server 15 SP2
3.6.12-3.67.2
fixed
suse enterprise server 15 SP3
3.6.12-3.67.2
fixed
suse enterprise server 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise server 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise server 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise server 15 SP7
3.6.15-150300.10.84.1
fixed
python-ipaddress
suse enterprise desktop 15 SP1
1.0.18-3.3.1
fixed
suse enterprise sap 12 SP2
1.0.18-3.13.1
fixed
suse enterprise sap 12 SP3
1.0.18-3.13.1
fixed
suse enterprise sap 12 SP4
1.0.18-3.13.1
fixed
suse enterprise sap 15 SP1
1.0.18-3.3.1
fixed
suse enterprise server 12 SP2
1.0.18-3.13.1
fixed
suse enterprise server 12 SP3
1.0.18-3.13.1
fixed
suse enterprise server 12 SP4
1.0.18-3.13.1
fixed
suse enterprise server 15
1.0.18-3.3.1
fixed
suse enterprise server 15 SP1
1.0.18-3.3.1
fixed
python3
suse enterprise desktop 15 SP1
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP2
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP3
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise desktop 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise desktop 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise desktop 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise sap 12
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP2
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP3
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP4
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP5
3.4.10-25.52.1
fixed
suse enterprise sap 15 SP1
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP2
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP3
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise sap 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise sap 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise sap 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise server 12
3.4.10-25.52.1
fixed
suse enterprise server 12 SP2
3.4.10-25.52.1
fixed
suse enterprise server 12 SP3
3.4.10-25.52.1
fixed
suse enterprise server 12 SP4
3.4.10-25.52.1
fixed
suse enterprise server 12 SP5
3.4.10-25.52.1
fixed
suse enterprise server 15
3.6.12-3.67.2
fixed
suse enterprise server 15 SP1
3.6.12-3.67.2
fixed
suse enterprise server 15 SP2
3.6.12-3.67.2
fixed
suse enterprise server 15 SP3
3.6.12-3.67.2
fixed
suse enterprise server 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise server 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise server 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise server 15 SP7
3.6.15-150300.10.84.1
fixed
python3-base
suse enterprise desktop 15 SP1
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP2
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP3
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise desktop 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise desktop 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise desktop 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise sap 12
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP2
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP3
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP4
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP5
3.4.10-25.52.1
fixed
suse enterprise sap 15 SP1
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP2
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP3
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise sap 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise sap 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise sap 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise server 12
3.4.10-25.52.1
fixed
suse enterprise server 12 SP2
3.4.10-25.52.1
fixed
suse enterprise server 12 SP3
3.4.10-25.52.1
fixed
suse enterprise server 12 SP4
3.4.10-25.52.1
fixed
suse enterprise server 12 SP5
3.4.10-25.52.1
fixed
suse enterprise server 15
3.6.12-3.67.2
fixed
suse enterprise server 15 SP1
3.6.12-3.67.2
fixed
suse enterprise server 15 SP2
3.6.12-3.67.2
fixed
suse enterprise server 15 SP3
3.6.12-3.67.2
fixed
suse enterprise server 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise server 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise server 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise server 15 SP7
3.6.15-150300.10.84.1
fixed
python3-curses
suse enterprise desktop 15 SP1
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP2
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP3
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise desktop 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise desktop 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise desktop 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise sap 12
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP2
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP3
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP4
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP5
3.4.10-25.52.1
fixed
suse enterprise sap 15 SP1
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP2
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP3
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise sap 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise sap 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise sap 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise server 12
3.4.10-25.52.1
fixed
suse enterprise server 12 SP2
3.4.10-25.52.1
fixed
suse enterprise server 12 SP3
3.4.10-25.52.1
fixed
suse enterprise server 12 SP4
3.4.10-25.52.1
fixed
suse enterprise server 12 SP5
3.4.10-25.52.1
fixed
suse enterprise server 15
3.6.12-3.67.2
fixed
suse enterprise server 15 SP1
3.6.12-3.67.2
fixed
suse enterprise server 15 SP2
3.6.12-3.67.2
fixed
suse enterprise server 15 SP3
3.6.12-3.67.2
fixed
suse enterprise server 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise server 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise server 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise server 15 SP7
3.6.15-150300.10.84.1
fixed
python3-dbm
suse enterprise desktop 15 SP1
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP2
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP3
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise desktop 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise desktop 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise desktop 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise sap 15 SP1
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP2
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP3
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise sap 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise sap 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise sap 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise server 15
3.6.12-3.67.2
fixed
suse enterprise server 15 SP1
3.6.12-3.67.2
fixed
suse enterprise server 15 SP2
3.6.12-3.67.2
fixed
suse enterprise server 15 SP3
3.6.12-3.67.2
fixed
suse enterprise server 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise server 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise server 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise server 15 SP7
3.6.15-150300.10.84.1
fixed
python3-devel
suse enterprise desktop 15 SP1
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP2
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP3
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise desktop 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise desktop 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise desktop 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise sap 12 SP2
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP3
3.4.10-25.52.1
fixed
suse enterprise sap 12 SP4
3.4.10-25.52.1
fixed
suse enterprise sap 15 SP1
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP2
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP3
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise sap 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise sap 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise sap 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise server 12 SP2
3.4.10-25.52.1
fixed
suse enterprise server 12 SP3
3.4.10-25.52.1
fixed
suse enterprise server 12 SP4
3.4.10-25.52.1
fixed
suse enterprise server 15
3.6.12-3.67.2
fixed
suse enterprise server 15 SP1
3.6.12-3.67.2
fixed
suse enterprise server 15 SP2
3.6.12-3.67.2
fixed
suse enterprise server 15 SP3
3.6.12-3.67.2
fixed
suse enterprise server 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise server 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise server 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise server 15 SP7
3.6.15-150300.10.84.1
fixed
python3-idle
suse enterprise desktop 15 SP1
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP2
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP3
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise desktop 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise desktop 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise desktop 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise sap 15 SP1
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP2
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP3
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise sap 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise sap 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise sap 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise server 15
3.6.12-3.67.2
fixed
suse enterprise server 15 SP1
3.6.12-3.67.2
fixed
suse enterprise server 15 SP2
3.6.12-3.67.2
fixed
suse enterprise server 15 SP3
3.6.12-3.67.2
fixed
suse enterprise server 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise server 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise server 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise server 15 SP7
3.6.15-150300.10.84.1
fixed
python3-testsuite
suse enterprise desktop 15 SP1
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP1
3.6.12-3.67.2
fixed
suse enterprise server 15 SP1
3.6.12-3.67.2
fixed
python3-tk
suse enterprise desktop 15 SP1
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP2
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP3
3.6.12-3.67.2
fixed
suse enterprise desktop 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise desktop 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise desktop 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise desktop 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise sap 15 SP1
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP2
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP3
3.6.12-3.67.2
fixed
suse enterprise sap 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise sap 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise sap 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise sap 15 SP7
3.6.15-150300.10.84.1
fixed
suse enterprise server 15
3.6.12-3.67.2
fixed
suse enterprise server 15 SP1
3.6.12-3.67.2
fixed
suse enterprise server 15 SP2
3.6.12-3.67.2
fixed
suse enterprise server 15 SP3
3.6.12-3.67.2
fixed
suse enterprise server 15 SP4
3.6.15-150300.10.21.1
fixed
suse enterprise server 15 SP5
3.6.15-150300.10.45.1
fixed
suse enterprise server 15 SP6
3.6.15-150300.10.60.1
fixed
suse enterprise server 15 SP7
3.6.15-150300.10.84.1
fixed
python3-tools
suse enterprise server 15
3.6.12-3.67.2
fixed
python36
suse enterprise server 12 SP3
3.6.8-6.19.1
fixed
python36-base
suse enterprise server 12 SP3
3.6.8-6.19.1
fixed
python36-curses
suse enterprise server 12 SP3
3.6.8-6.19.1
fixed
python36-dbm
suse enterprise server 12 SP3
3.6.8-6.19.1
fixed
python36-devel
suse enterprise server 12 SP3
3.6.8-6.19.1
fixed
python36-doc
suse enterprise server 12 SP3
3.6.8-6.19.1
fixed
python36-idle
suse enterprise server 12 SP3
3.6.8-6.19.1
fixed
python36-testsuite
suse enterprise server 12 SP3
3.6.8-6.19.1
fixed
python36-tk
suse enterprise server 12 SP3
3.6.8-6.19.1
fixed
python36-tools
suse enterprise server 12 SP3
3.6.8-6.19.1
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
platform-python
RHEL 8
0:3.6.8-31.el8
fixed
platform-python-debug
RHEL 8
0:3.6.8-31.el8
fixed
platform-python-devel
RHEL 8
0:3.6.8-31.el8
fixed
python3
RHEL 7
0:3.6.8-18.el7
fixed
python3-debug
RHEL 7
0:3.6.8-18.el7
fixed
python3-devel
RHEL 7
0:3.6.8-18.el7
fixed
python3-idle
RHEL 7
0:3.6.8-18.el7
fixed
RHEL 8
0:3.6.8-31.el8
fixed
python3-libs
RHEL 7
0:3.6.8-18.el7
fixed
RHEL 8
0:3.6.8-31.el8
fixed
python3-test
RHEL 7
0:3.6.8-18.el7
fixed
RHEL 8
0:3.6.8-31.el8
fixed
python3-tkinter
RHEL 7
0:3.6.8-18.el7
fixed
RHEL 8
0:3.6.8-31.el8
fixed
References