birdhousebuilder.recipe.nginx@0.1.2 vulnerabilities

A Buildout recipe to install and configure Nginx with conda.

Direct Vulnerabilities

Known vulnerabilities in the birdhousebuilder.recipe.nginx package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • M
Man-in-the-Middle (MitM)

birdhousebuilder-recipe-nginx is a Buildout recipe to install Nginx from an Anaconda channel and to deploy a site configuration for your application.

Affected versions of this package are vulnerable to Man-in-the-Middle (MitM) attacks due to not explicitly enabling SSLv3. This vulnerability is also known as the POODLE attack.

How to fix Man-in-the-Middle (MitM)?

Upgrade birdhousebuilder-recipe-nginx to version 0.1.5 or higher.

[,0.1.5)
  • L
Man-in-the-Middle (MitM)

birdhousebuilder_recipe_nginx is a Buildout recipe to install and configure Nginx with conda.

Affected versions of this package are vulnerable to Man-in-the-Middle (MitM) attacks. The SSLv3 protocol uses nondeterministic CBC padding, which makes it easier for Man-in-the-Middle (MitM) attackers to obtain cleartext data via a padding-oracle attack. This is also known as the POODLE vulnerability.

[0.1.2,0.1.5)