UBUNTU-CVE-2022-21699

Source
https://ubuntu.com/security/CVE-2022-21699
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2022/UBUNTU-CVE-2022-21699.json
JSON Data
https://api.test.osv.dev/v1/vulns/UBUNTU-CVE-2022-21699
Related
Published
2022-01-19T22:15:00Z
Modified
2024-12-18T16:34:16Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

IPython (Interactive Python) is a command shell for interactive computing in multiple programming languages, originally developed for the Python programming language. Affected versions are subject to an arbitrary code execution vulnerability achieved by not properly managing cross user temporary files. This vulnerability allows one user to run code as another on the same machine. All users are advised to upgrade.

References

Affected packages

Ubuntu:Pro:14.04:LTS / ipython

Package

Name
ipython
Purl
pkg:deb/ubuntu/ipython?arch=src?distro=esm-infra-legacy/trusty

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.13.2-2

1.*

1.1.0-1
1.2.0~rc1-1
1.2.1-2
1.2.1-2ubuntu0.1~esm1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:16.04:LTS / ipython

Package

Name
ipython
Purl
pkg:deb/ubuntu/ipython?arch=src?distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*

2.3.0-2ubuntu1
2.3.0-2ubuntu2
2.4.1-1
2.4.1-1ubuntu0.1~esm2

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:18.04:LTS / ipython

Package

Name
ipython
Purl
pkg:deb/ubuntu/ipython?arch=src?distro=esm-apps/bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.5.0-1ubuntu0.1~esm1

Affected versions

5.*

5.1.0-3
5.5.0-1

Ecosystem specific

{
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro",
    "ubuntu_priority": "medium",
    "binaries": [
        {
            "binary_version": "5.5.0-1ubuntu0.1~esm1",
            "binary_name": "ipython"
        },
        {
            "binary_version": "5.5.0-1ubuntu0.1~esm1",
            "binary_name": "ipython3"
        },
        {
            "binary_version": "5.5.0-1ubuntu0.1~esm1",
            "binary_name": "python-ipython"
        },
        {
            "binary_version": "5.5.0-1ubuntu0.1~esm1",
            "binary_name": "python-ipython-doc"
        },
        {
            "binary_version": "5.5.0-1ubuntu0.1~esm1",
            "binary_name": "python3-ipython"
        }
    ]
}

Ubuntu:20.04:LTS / ipython

Package

Name
ipython
Purl
pkg:deb/ubuntu/ipython?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*

5.8.0-1
5.8.0-1build1
5.8.0-2

7.*

7.12.0-1
7.13.0-1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:20.04:LTS / ipython

Package

Name
ipython
Purl
pkg:deb/ubuntu/ipython?arch=src?distro=esm-apps/focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
7.13.0-1ubuntu0.1~esm1

Affected versions

5.*

5.8.0-1
5.8.0-1build1
5.8.0-2

7.*

7.12.0-1
7.13.0-1

Ecosystem specific

{
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro",
    "ubuntu_priority": "medium",
    "binaries": [
        {
            "binary_version": "7.13.0-1ubuntu0.1~esm1",
            "binary_name": "ipython3"
        },
        {
            "binary_version": "7.13.0-1ubuntu0.1~esm1",
            "binary_name": "python-ipython-doc"
        },
        {
            "binary_version": "7.13.0-1ubuntu0.1~esm1",
            "binary_name": "python3-ipython"
        }
    ]
}

Ubuntu:22.04:LTS / ipython

Package

Name
ipython
Purl
pkg:deb/ubuntu/ipython?arch=src?distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
7.31.1-1

Affected versions

7.*

7.20.0-1
7.22.0-1
7.27.0-1
7.31.0-1

Ecosystem specific

{
    "availability": "No subscription required",
    "ubuntu_priority": "medium",
    "binaries": [
        {
            "binary_version": "7.31.1-1",
            "binary_name": "ipython3"
        },
        {
            "binary_version": "7.31.1-1",
            "binary_name": "python-ipython-doc"
        },
        {
            "binary_version": "7.31.1-1",
            "binary_name": "python3-ipython"
        }
    ]
}