Vulnerability Database
Blog
FAQ
Docs
CVE-2015-5607
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2015-5607
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2015-5607.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2015-5607
Aliases
GHSA-7fc2-rm35-2pp7
PYSEC-2017-47
Related
UBUNTU-CVE-2015-5607
USN-5953-1
Published
2017-09-20T16:29:00Z
Modified
2024-09-11T02:00:05Z
Severity
8.8 (High)
CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
[none]
Details
Cross-site request forgery in the REST API in IPython 2 and 3.
References
http://www.openwall.com/lists/oss-security/2015/07/21/3
https://bugzilla.redhat.com/show_bug.cgi?id=1243842
https://github.com/ipython/ipython/commit/1415a9710407e7c14900531813c15ba6165f0816
https://github.com/ipython/ipython/commit/a05fe052a18810e92d9be8c1185952c13fe4e5b0
http://lists.fedoraproject.org/pipermail/package-announce/2015-July/162671.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-July/162936.html
https://security-tracker.debian.org/tracker/CVE-2015-5607
Affected packages
Debian:11
/
ipython
Package
Name
ipython
Purl
pkg:deb/debian/ipython?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2.4.1-1
Ecosystem specific
{ "urgency": "not yet assigned" }
Debian:12
/
ipython
Package
Name
ipython
Purl
pkg:deb/debian/ipython?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2.4.1-1
Ecosystem specific
{ "urgency": "not yet assigned" }
Debian:13
/
ipython
Package
Name
ipython
Purl
pkg:deb/debian/ipython?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2.4.1-1
Ecosystem specific
{ "urgency": "not yet assigned" }
CVE-2015-5607 - OSV