{"id":"RLSA-2020:4654","summary":"Moderate: python27:2.7 security update","details":"Python is an interpreted, interactive, object-oriented programming language that supports modules, classes, exceptions, high-level dynamic data types, and dynamic typing. The python27 packages provide a stable release of Python 2.7 with a number of additional utilities and database connectors for MySQL and PostgreSQL.\n\nSecurity Fix(es):\n\n* python: infinite loop in the tarfile module via crafted TAR archive (CVE-2019-20907)\n\n* python-pip: directory traversal in _download_http_url() function in src/pip/_internal/download.py (CVE-2019-20916)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.\n\nAdditional Changes:\n\nFor detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section.","modified":"2026-03-11T05:55:20.457239Z","published":"2020-11-03T12:24:08Z","upstream":["CVE-2019-20907","CVE-2019-20916"],"references":[{"type":"ADVISORY","url":"https://errata.rockylinux.org/RLSA-2020:4654"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1856481"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1868135"}],"affected":[{"package":{"name":"babel","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/babel?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.5.1-9.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"Cython","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/Cython?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.28.1-7.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"Cython","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/Cython?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.28.1-7.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"pytest","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/pytest?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.4.2-13.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"pytest","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/pytest?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.4.2-13.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python2-pip","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python2-pip?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:9.0.3-18.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python2-rpm-macros","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python2-rpm-macros?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3-38.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-attrs","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-attrs?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:17.4.0-10.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-attrs","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-attrs?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:17.4.0-10.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-chardet","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-chardet?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.0.4-10.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-chardet","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-chardet?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.0.4-10.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-coverage","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-coverage?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.5.1-4.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-coverage","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-coverage?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.5.1-4.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-dns","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-dns?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.15.0-10.module+el8.7.0+1062+663ba31c"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-dns","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-dns?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.15.0-10.el8"}],"database_specific":{"yum_repository":"BaseOS"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-dns","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-dns?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.15.0-10.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-docs","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-docs?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.7.16-2.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-docutils","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-docutils?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.14-12.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-docutils","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-docutils?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.14-12.module+el8.3.0+120+426d8baf"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-funcsigs","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-funcsigs?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.0.2-13.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-idna","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-idna?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.5-7.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-idna","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-idna?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.5-7.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-ipaddress","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-ipaddress?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.0.18-6.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-jinja2","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-jinja2?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.10-8.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-lxml","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-lxml?distro=rocky-linux-8-5-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.2.3-3.el8"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-markupsafe","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-markupsafe?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.23-19.el8"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-markupsafe","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-markupsafe?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.23-19.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-mock","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-mock?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.0.0-13.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-nose","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-nose?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.3.7-30.module+el8.3.0+120+426d8baf"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-pluggy","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-pluggy?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.6.0-8.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-pluggy","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-pluggy?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.6.0-8.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-psycopg2","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-psycopg2?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.7.5-7.el8"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-psycopg2","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-psycopg2?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.7.5-7.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-py","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-py?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.5.3-6.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-py","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-py?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.5.3-6.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-pygments","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-pygments?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.2.0-20.module+el8.3.0+120+426d8baf"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-pymongo","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-pymongo?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.6.1-11.module+el8.3.0+120+426d8baf"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-requests","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-requests?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.20.0-3.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-requests","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-requests?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.20.0-3.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-PyMySQL","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-PyMySQL?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.8.0-10.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-PyMySQL","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-PyMySQL?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.8.0-10.module+el8.3.0+120+426d8baf"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-pysocks","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-pysocks?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.6.8-6.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-pysocks","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-pysocks?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.6.8-6.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-pytest-mock","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-pytest-mock?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.9.0-4.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-setuptools_scm","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-setuptools_scm?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.15.7-6.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-sqlalchemy","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-sqlalchemy?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.3.2-2.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-sqlalchemy","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-sqlalchemy?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.3.2-2.module+el8.3.0+120+426d8baf"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-virtualenv","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-virtualenv?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:15.1.0-19.module+el8.3.0+120+426d8baf"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"python-wheel","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/python-wheel?distro=rocky-linux-8-4-legacy&epoch=1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:0.31.1-2.module+el8.3.0+120+426d8baf"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"pytz","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/pytz?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2017.2-12.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"pytz","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/pytz?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2017.2-12.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"PyYAML","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/PyYAML?distro=rocky-linux-8&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.12-16.module+el8.5.0+706+735ec4b3"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"PyYAML","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/PyYAML?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.12-16.module+el8.4.0+403+9ae17a31"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}},{"package":{"name":"scipy","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/scipy?distro=rocky-linux-8-4-legacy&epoch=0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.0.0-20.module+el8.3.0+120+426d8baf"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2020:4654.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H"}],"credits":[{"name":"Rocky Enterprise Software Foundation"},{"name":"Red Hat"}]}