Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2015-1330

Опубликовано: 28 июл. 2015
Источник: oracle-oval
Платформа: Oracle Linux 6

Описание

ELSA-2015-1330: python security, bug fix, and enhancement update (MODERATE)

[2.6.6-64.0.1]

  • Add Oracle Linux distribution in platform.py [orabug 21288328] (Keshav Sharma)

[2.6.6-64]

  • Enable use of deepcopy() with instance methods Resolves: rhbz#1223037

[2.6.6-63]

  • Since -libs now provide python-ordered dict, added ordereddict dist-info to site-packages Resolves: rhbz#1199997

[2.6.6-62]

  • Fix CVE-2014-7185/4650/1912 CVE-2013-1752 Resolves: rhbz#1206572

[2.6.6-61]

  • Fix logging module error when multiprocessing module is not initialized Resolves: rhbz#1204966

[2.6.6-60]

  • Add provides for python-ordereddict Resolves: rhbz#1199997

[2.6.6-59]

  • Let ConfigParse handle options without values
  • Add check phase to specfile, fix and skip relevant failing tests Resolves: rhbz#1031709

[2.6.6-58]

  • Make Popen.communicate catch EINTR error Resolves: rhbz#1073165

[2.6.6-57]

  • Add choices for sort option of cProfile for better output Resolves: rhbz#1160640

[2.6.6-56]

  • Make multiprocessing ignore EINTR Resolves: rhbz#1180864

[2.6.6-55]

  • Fix iteration over files with very long lines Resolves: rhbz#794632

[2.6.6-54]

  • Fix subprocess.Popen.communicate() being broken by SIGCHLD handler. Resolves: rhbz#1065537
  • Rebuild against latest valgrind-devel. Resolves: rhbz#1142170

[2.6.6-53]

  • Bump release up to ensure proper upgrade path. Related: rhbz#958256

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

python

2.6.6-64.0.1.el6

python-devel

2.6.6-64.0.1.el6

python-libs

2.6.6-64.0.1.el6

python-test

2.6.6-64.0.1.el6

python-tools

2.6.6-64.0.1.el6

tkinter

2.6.6-64.0.1.el6

Oracle Linux i686

python

2.6.6-64.0.1.el6

python-devel

2.6.6-64.0.1.el6

python-libs

2.6.6-64.0.1.el6

python-test

2.6.6-64.0.1.el6

python-tools

2.6.6-64.0.1.el6

tkinter

2.6.6-64.0.1.el6

Связанные уязвимости

oracle-oval
больше 9 лет назад

ELSA-2015-1064: python27 security, bug fix, and enhancement update (MODERATE)

suse-cvrf
почти 10 лет назад

Security update for python

oracle-oval
больше 9 лет назад

ELSA-2015-2101: python security, bug fix, and enhancement update (MODERATE)

suse-cvrf
больше 5 лет назад

Security update for python

ubuntu
около 6 лет назад

** REJECT ** Various versions of Python do not properly restrict readline calls, which allows remote attackers to cause a denial of service (memory consumption) via a long string, related to (1) httplib - fixed in 2.7.4, 2.6.9, and 3.3.3; (2) ftplib - fixed in 2.7.6, 2.6.9, 3.3.3; (3) imaplib - not yet fixed in 2.7.x, fixed in 2.6.9, 3.3.3; (4) nntplib - fixed in 2.7.6, 2.6.9, 3.3.3; (5) poplib - not yet fixed in 2.7.x, fixed in 2.6.9, 3.3.3; and (6) smtplib - not yet fixed in 2.7.x, fixed in 2.6.9, not yet fixed in 3.3.x. NOTE: this was REJECTed because it is incompatible with CNT1 "Independently Fixable" in the CVE Counting Decisions.