Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
77 changes: 77 additions & 0 deletions advisories/python/PSF-0000-CVE-2026-19445.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,77 @@
{
"schema_version": "1.5.0",
"id": "PSF-0000-CVE-2026-19445",
"aliases": [
"CVE-2026-19445"
],
"published": "2026-09-30T16:16:04.923Z",
"modified": "2026-09-30T20:57:42.815Z",
"details": "A remote, unauthenticated TLS client can make a server crash or call\nthrough a freed pointer if its sni_callback assigns a different context to\nSSLSocket.context (the documented way to select a certificate per server\nname) and nothing else keeps the original ssl.SSLContext alive. Typical\ncases are servers that create an SSLContext per connection or replace it\nwhile connections are open; servers that wrap their listening socket with\nit are not affected.\n\n\nMitigation: keep a reference to every SSLContext that sets sni_callback for\nthe lifetime of the server. TLS clients are not affected.",
"affected": [
{
"ranges": [
{
"type": "GIT",
"events": [
{
"introduced": "0"
},
{
"fixed": "34a53dce8174da2fceb12fe084a4def02a10053d"
},
{
"fixed": "46133cd57d309652139ada74014aca7665ac552b"
},
{
"fixed": "63fab143d94cafae71850831acfb52041ba44af7"
},
{
"fixed": "cd7e51e7d4563866fbaa1e2521ae69b45daf3698"
},
{
"fixed": "d8717ed01717a9641686e6e6f83f0ab8af235e2c"
}
],
"repo": "https://github.com/python/cpython"
}
]
}
],
"references": [
{
"type": "WEB",
"url": "https://github.com/python/cpython/pull/158504"
},
{
"type": "ADVISORY",
"url": "https://mail.python.org/archives/list/security-announce@python.org/thread/QMQIUQB6WGGC3MI7I3WKQXOYOBDSPPS3/"
},
{
"type": "REPORT",
"url": "https://github.com/python/cpython/issues/156293"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/34a53dce8174da2fceb12fe084a4def02a10053d"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/46133cd57d309652139ada74014aca7665ac552b"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/63fab143d94cafae71850831acfb52041ba44af7"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/cd7e51e7d4563866fbaa1e2521ae69b45daf3698"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/d8717ed01717a9641686e6e6f83f0ab8af235e2c"
}
],
"database_specific": {
"cwe_ids": []
}
}
70 changes: 70 additions & 0 deletions advisories/python/PSF-0000-CVE-2026-19553.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,70 @@
{
"schema_version": "1.5.0",
"id": "PSF-0000-CVE-2026-19553",
"aliases": [
"CVE-2026-19553"
],
"published": "2026-09-30T16:17:39.368Z",
"modified": "2026-09-30T20:57:30.272Z",
"details": "ssl.SSLContext.wrap_bio() didn't require the server_hostname argument\nto not be None if ssl.SSLContext.check_hostname was set. Due to a\nmissing parameter check in SSLObject, if the server_hostname argument\nisn't supplied then hostname verification would be silently skipped.\n\n\nThis defect could lead to programs where certificate hostname verification\n*appeared* to be succeeding with SSLContext.check_hostname = True and no\nValueError being raised due to misconfiguration.\n\n\nIf the program passes a server_hostname value that isn't an empty string\nor None to any of these APIs then certificate hostname verification\nproceeds as expected and the program is not affected by this vulnerability.\n\n\nMitigating this vulnerability doesn't require updating Python or applying\nthe patch. To mitigate, pass a valid non-None and non-empty\nserver_hostname value to SSLContext.wrap_bio(),\nasyncio.create_connection(), or asyncio.loop.start_tls() and\ncertificate hostname verification will proceed as expected. Upgrading to\nthe latest version of Python or applying the patch only changes the\nbehavior from silently skipping hostname verification to raising a\nValueError, similar to SSLContext.wrap_socket(), when server_hostname\nisn't supplied.",
"affected": [
{
"ranges": [
{
"type": "GIT",
"events": [
{
"introduced": "0"
},
{
"fixed": "1697ea386c707142555d98a1263176bbbc014a96"
},
{
"fixed": "641390146a16a38e6701923f4ee4f1940ae77082"
},
{
"fixed": "966bf426d0b6c31c1b0a255ff14a17143a466ced"
},
{
"fixed": "f4e43ba525187282f2011da0e6ffc0d2b08d8062"
}
],
"repo": "https://github.com/python/cpython"
}
]
}
],
"references": [
{
"type": "WEB",
"url": "https://github.com/python/cpython/pull/158503"
},
{
"type": "REPORT",
"url": "https://github.com/python/cpython/issues/156793"
},
{
"type": "ADVISORY",
"url": "https://mail.python.org/archives/list/security-announce@python.org/thread/QNZRG3YOAMTHDCMVCICXGY6YEFPY2VDL/"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/1697ea386c707142555d98a1263176bbbc014a96"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/641390146a16a38e6701923f4ee4f1940ae77082"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/966bf426d0b6c31c1b0a255ff14a17143a466ced"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/f4e43ba525187282f2011da0e6ffc0d2b08d8062"
}
],
"database_specific": {
"cwe_ids": []
}
}
9 changes: 8 additions & 1 deletion advisories/python/PSF-2026-39.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,7 +2,7 @@
"schema_version": "1.5.0",
"id": "PSF-2026-39",
"published": "2026-08-25T15:07:58.054Z",
"modified": "2026-09-30T00:40:14.440Z",
"modified": "2026-09-30T20:58:38.425Z",
"aliases": [
"CVE-2026-15310"
],
Expand Down Expand Up @@ -36,6 +36,9 @@
},
{
"fixed": "dcdd406ddbfc4cb29b24c3df17cbabe21d316ce1"
},
{
"fixed": "09a2e7e6678b4f65449e7ad8f112c48f944591e2"
}
],
"repo": "https://github.com/python/cpython"
Expand Down Expand Up @@ -83,6 +86,10 @@
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/dcdd406ddbfc4cb29b24c3df17cbabe21d316ce1"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/09a2e7e6678b4f65449e7ad8f112c48f944591e2"
}
],
"database_specific": {
Expand Down
9 changes: 8 additions & 1 deletion advisories/python/PSF-2026-40.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,7 +2,7 @@
"schema_version": "1.5.0",
"id": "PSF-2026-40",
"published": "2026-09-11T17:27:04.339Z",
"modified": "2026-09-22T00:32:16.178Z",
"modified": "2026-09-30T20:53:04.744Z",
"aliases": [
"CVE-2026-87910"
],
Expand All @@ -24,6 +24,9 @@
},
{
"fixed": "9c17bace90f88dfba6d0e2fe23c8e7ae35f83955"
},
{
"fixed": "764fd0af8d9e19d3684a58d2e58bf770f0605036"
}
],
"repo": "https://github.com/python/cpython"
Expand Down Expand Up @@ -55,6 +58,10 @@
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/9c17bace90f88dfba6d0e2fe23c8e7ae35f83955"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/764fd0af8d9e19d3684a58d2e58bf770f0605036"
}
],
"database_specific": {
Expand Down
16 changes: 15 additions & 1 deletion advisories/python/PSF-2026-41.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,7 +2,7 @@
"schema_version": "1.5.0",
"id": "PSF-2026-41",
"published": "2026-09-14T19:14:03.873Z",
"modified": "2026-09-30T00:36:09.729Z",
"modified": "2026-09-30T20:53:33.017Z",
"aliases": [
"CVE-2026-82049"
],
Expand Down Expand Up @@ -30,6 +30,12 @@
},
{
"fixed": "28f315486b3da0352b9a1de1c3c97f4127ba4771"
},
{
"fixed": "c66df4e70435d257fd488b35ea129c6f317433a8"
},
{
"fixed": "cc1689830c6b9aaddded2fb9f2fe8116867e2c0e"
}
],
"repo": "https://github.com/python/cpython"
Expand Down Expand Up @@ -69,6 +75,14 @@
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/28f315486b3da0352b9a1de1c3c97f4127ba4771"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/c66df4e70435d257fd488b35ea129c6f317433a8"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/cc1689830c6b9aaddded2fb9f2fe8116867e2c0e"
}
],
"database_specific": {
Expand Down
22 changes: 18 additions & 4 deletions advisories/python/PSF-2026-42.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,7 +2,7 @@
"schema_version": "1.5.0",
"id": "PSF-2026-42",
"published": "2026-09-29T17:46:01.811Z",
"modified": "2026-09-29T17:55:00.520Z",
"modified": "2026-09-30T20:59:26.291Z",
"aliases": [
"CVE-2026-12345"
],
Expand All @@ -12,15 +12,21 @@
"ranges": [
{
"type": "GIT",
"repo": "https://github.com/python/cpython",
"events": [
{
"introduced": "0"
},
{
"fixed": "5c20517a4fc56683efe63a7751020db9573f538d"
},
{
"fixed": "458e7134a5af7f86aee9d21b51cf499b41aa4420"
},
{
"fixed": "e1f3590f155c6d66007e958c98c9d69316551993"
}
]
],
"repo": "https://github.com/python/cpython"
}
]
}
Expand All @@ -37,9 +43,17 @@
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/5c20517a4fc56683efe63a7751020db9573f538d"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/458e7134a5af7f86aee9d21b51cf499b41aa4420"
},
{
"type": "FIX",
"url": "https://github.com/python/cpython/commit/e1f3590f155c6d66007e958c98c9d69316551993"
}
],
"database_specific": {
"cwe_ids": []
}
}
}