Security Advisory

CVE-2013-5123

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-11-05 21:16:59
Last updated 2024-08-06 17:06:50
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The mirroring support (-M, --use-mirrors) in Python Pip before 1.5 uses insecure DNS querying and authenticity checks which allows attackers to perform man-in-the-middle attacks.