Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

rootio-python3-pip: Unpatched Python Package Allows Arbitrary Code Execution

ROOT-OS-UBUNTU-2204-CVE-2024-35195
Summary

A security patch has been released for a Python package used by Root:Ubuntu:22.04. If not updated, an attacker could potentially inject malicious code, compromising the system. Update to the latest patched version to fix this issue.

What to do
  • Update rootio-python3-pip to version 22.0.2+dfsg-1ubuntu0.7.root.io.6.
  • Update rootio-python3-pip to version 22.0.2+dfsg-1ubuntu0.7.root.io.7.
  • Update rootio-python3-pip to version 22.0.2+dfsg-1ubuntu0.7.root.io.8.
Affected software
VendorProductAffected versionsFix available
rootio-python3-pip <= 22.0.2+dfsg-1ubuntu0.7.root.io.6 22.0.2+dfsg-1ubuntu0.7.root.io.6
rootio-python3-pip <= 22.0.2+dfsg-1ubuntu0.7.root.io.7 22.0.2+dfsg-1ubuntu0.7.root.io.7
rootio-python3-pip <= 22.0.2+dfsg-1ubuntu0.7.root.io.8 22.0.2+dfsg-1ubuntu0.7.root.io.8
Original title
CVE-2024-35195 in rootio-python3-pip - Patched by Root
Original description
Root has patched CVE-2024-35195 in the rootio-python3-pip package for Root:Ubuntu:22.04. Multiple fixed versions available.
Published: 10 Mar 2026 · Updated: 13 Mar 2026 · First seen: 10 Mar 2026