Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2015-1064

Опубликовано: 04 фев. 2016
Источник: oracle-oval
Платформа: Oracle Linux 6
Платформа: Oracle Linux 7

Описание

ELSA-2015-1064: python27 security, bug fix, and enhancement update (MODERATE)

python27 [1.1-17]

  • Require python-pip and python-wheel (note: in rh-python34 this is not necessary, because 'python' depends on these).

python27-python [2.7.8-3]

  • Add httplib fix for CVE-2013-1752 Resolves: rhbz#1187779

[2.7.8-2]

  • Fix %check unset DISPLAY setion not failing properly on failed test
  • Fixed CVE-2013-1752, CVE-2013-1753 Resolves: rhbz#1187779

[2.7.8-1]

  • Update to 2.7.8. Resolves: rhbz#1167912
  • Make python-devel depend on scl-utils-build. Resolves: rhbz#1170993

python27-python-pip

  • New Package added

python27-python-setuptools [0.9.8-3]

  • Enhance patch restoring proxy support in SSL connections Resolves: rhbz#1222507

python27-python-simplejson [3.2.0-2]

  • Fix CVE-2014-461, add boundary checks Resolves: rhbz#1222534

python27-python-wheel

  • New Package added

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

python27

1.1-17.el6

python27-python

2.7.8-3.el6

python27-python-debug

2.7.8-3.el6

python27-python-devel

2.7.8-3.el6

python27-python-libs

2.7.8-3.el6

python27-python-pip

1.5.6-5.el6

python27-python-setuptools

0.9.8-3.el6

python27-python-simplejson

3.2.0-2.el6

python27-python-test

2.7.8-3.el6

python27-python-tools

2.7.8-3.el6

python27-python-wheel

0.24.0-2.el6

python27-runtime

1.1-17.el6

python27-scldevel

1.1-17.el6

python27-tkinter

2.7.8-3.el6

Oracle Linux 7

Oracle Linux x86_64

python27

1.1-20.el7

python27-python

2.7.8-3.el7

python27-python-debug

2.7.8-3.el7

python27-python-devel

2.7.8-3.el7

python27-python-libs

2.7.8-3.el7

python27-python-pip

1.5.6-5.el7

python27-python-setuptools

0.9.8-5.el7

python27-python-simplejson

3.2.0-3.el7

python27-python-test

2.7.8-3.el7

python27-python-tools

2.7.8-3.el7

python27-python-wheel

0.24.0-2.el7

python27-runtime

1.1-20.el7

python27-scldevel

1.1-20.el7

python27-tkinter

2.7.8-3.el7

Связанные уязвимости

oracle-oval
почти 10 лет назад

ELSA-2015-1330: python security, bug fix, and enhancement update (MODERATE)

oracle-oval
больше 9 лет назад

ELSA-2015-2101: python security, bug fix, and enhancement update (MODERATE)

suse-cvrf
почти 10 лет назад

Security update for python

suse-cvrf
больше 5 лет назад

Security update for python

ubuntu
около 6 лет назад

** REJECT ** Various versions of Python do not properly restrict readline calls, which allows remote attackers to cause a denial of service (memory consumption) via a long string, related to (1) httplib - fixed in 2.7.4, 2.6.9, and 3.3.3; (2) ftplib - fixed in 2.7.6, 2.6.9, 3.3.3; (3) imaplib - not yet fixed in 2.7.x, fixed in 2.6.9, 3.3.3; (4) nntplib - fixed in 2.7.6, 2.6.9, 3.3.3; (5) poplib - not yet fixed in 2.7.x, fixed in 2.6.9, 3.3.3; and (6) smtplib - not yet fixed in 2.7.x, fixed in 2.6.9, not yet fixed in 3.3.x. NOTE: this was REJECTed because it is incompatible with CNT1 "Independently Fixable" in the CVE Counting Decisions.

Уязвимость ELSA-2015-1064