Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!Close

CVE-2014-7143

Published: 12 November 2019

Python Twisted 14.0 trustRoot is not respected in HTTP client

Notes

AuthorNote
mdeslaur
14.x only
14.0.1 fixes issue, 14.0.2 fixes tests

Priority

Medium

CVSS 3 base score: 7.5

Status

Package Release Status
twisted
Launchpad, Ubuntu, Debian
upstream
Released (14.0.1)
lucid Not vulnerable
(10.0.0-2ubuntu2)
precise Not vulnerable
(11.1.0-1ubuntu2)
trusty Not vulnerable
(13.2.0-1ubuntu1)
Patches:
upstream: https://twistedmatrix.com/trac/changeset/43124/
upstream: https://twistedmatrix.com/trac/changeset/43125/
upstream: https://twistedmatrix.com/trac/changeset/43128/
upstream: https://twistedmatrix.com/trac/changeset/43129/
upstream: https://twistedmatrix.com/trac/changeset/43130/
twisted-py3
Launchpad, Ubuntu, Debian
upstream
Released (14.0.1)
lucid Does not exist

precise Does not exist

trusty Does not exist
(trusty was not-affected [13.2.0-1ubuntu1])