Описание
ELSA-2021-1608: python-cryptography security, bug fix, and enhancement update (MODERATE)
[3.2.1-4]
- CVE-2020-36242: Fixed a bug where certain sequences of update() calls when symmetrically encrypting very large payloads (>2GB) could result in an integer overflow, leading to buffer overflows.
- Resolves: rhbz#1926528
[3.2.1-3]
- Conflict with non-matching vector package
[3.2.1-2]
- Re-add remove NPN bindings, required for pyOpenSSL
- Resolves: rhbz#1907429
[3.2.1-1]
- Rebase to upstream release 3.2.1
- Resolves: rhbz#1873581
- Resolves: rhbz#1778939
- Removed dependencies on python-asn1crypto, python-idna
Обновленные пакеты
Oracle Linux 8
Oracle Linux aarch64
python3-cryptography
3.2.1-4.el8
Oracle Linux x86_64
python3-cryptography
3.2.1-4.el8
Связанные CVE
Связанные уязвимости
Security update for python-cryptography, python-cryptography-vectors
Moderate: python-cryptography security, bug fix, and enhancement update
Security update for grpc, protobuf, python-Deprecated, python-PyGithub, python-aiocontextvars, python-avro, python-bcrypt, python-cryptography, python-cryptography-vectors, python-google-api-core, python-googleapis-common-protos, python-grpcio-gcp, python-humanfriendly, python-jsondiff, python-knack, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-psutil, python-pytest-asyncio, python-requests, python-websocket-client, python-websockets
Security update for grpc, protobuf, python-Deprecated, python-PyGithub, python-aiocontextvars, python-avro, python-bcrypt, python-cryptography, python-cryptography-vectors, python-google-api-core, python-googleapis-common-protos, python-grpcio-gcp, python-humanfriendly, python-jsondiff, python-knack, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-psutil, python-pytest-asyncio, python-requests, python-websocket-client, python-websockets
ALT-PU-2023-8071: package `python3-module-cryptography` update to version 41.0.7-alt0.p10.1