Do your applications use this vulnerable package?
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.Test your applications
- Snyk ID SNYK-PYTHON-PYTHON3DATEUTIL-536644
- published 4 Dec 2019
- disclosed 4 Dec 2019
- credit Lukas Martini
Introduced: 4 Dec 2019Malicious CVE NOT AVAILABLE CWE-506 Open this link in a new tab
How to fix?
python3-dateutil is a malicious package.
The package steals SSH and GPG keys from infected machines and sends them to a remote server.