Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Mageia 7: MGASA-2020-0457 Moderate: Jupyter Notebook Open Redirect Issue

mageia
Calendar Grey December 17, 2020
Dist Mageia Esm H88
MGASA-2020-0458: Recent updates to the jupyter-notebook packages resolve a critical open redirect vulnerability found in Mageia 7, enhancing the overall security of the server.
Jupyter Notebook before version 6.1.5 has an Open redirect vulnerability

Summary

Jupyter Notebook before version 6.1.5 has an Open redirect vulnerability. A maliciously crafted link to a notebook server could redirect the browser to a different website. All notebook servers are technically affected, however, these maliciously crafted links can only be reasonably made for known notebook server hosts. A link to your notebook server may appear safe, but ultimately redirect to a spoofed server on the public internet. (CVE-2020-26215)

References

- https://bugs.mageia.org/show_bug.cgi?id=27705

- https://lists.debian.org/debian-lts-announce/2020/12/msg00004.html

- https://www.cve.org/CVERecord?id=CVE-2020-26215

Resolution

SRPMS

- 7/core/jupyter-notebook-5.7.8-1.1.mga7

Publication date: 17 Dec 2020
URL: https://advisories.mageia.org/MGASA-2020-0457.html
Type: security
CVE: CVE-2020-26215

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here