Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-4399

Опубликовано: 16 нояб. 2021
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2021-4399: python3 security update (MODERATE)

[3.6.8-41.0.1]

  • Add Oracle Linux distribution in platform.py [Orabug: 20812544]

[3.6.8-41]

  • Security fix for CVE-2021-3733: Denial of service when identifying crafted invalid RFCs Resolves: rhbz#1995234

[3.6.8-40]

  • Adjusted the postun scriptlets to enable upgrading to RHEL 9
  • Resolves: rhbz#1933055

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

platform-python

3.6.8-41.0.1.el8

platform-python-debug

3.6.8-41.0.1.el8

platform-python-devel

3.6.8-41.0.1.el8

python3-idle

3.6.8-41.0.1.el8

python3-libs

3.6.8-41.0.1.el8

python3-test

3.6.8-41.0.1.el8

python3-tkinter

3.6.8-41.0.1.el8

Oracle Linux x86_64

platform-python

3.6.8-41.0.1.el8

platform-python-debug

3.6.8-41.0.1.el8

platform-python-devel

3.6.8-41.0.1.el8

python3-idle

3.6.8-41.0.1.el8

python3-libs

3.6.8-41.0.1.el8

python3-test

3.6.8-41.0.1.el8

python3-tkinter

3.6.8-41.0.1.el8

Связанные CVE

Связанные уязвимости

CVSS3: 5.7
ubuntu
около 4 лет назад

There's a flaw in Python 3's pydoc. A local or adjacent attacker who discovers or is able to convince another local or adjacent user to start a pydoc server could access the server and use it to disclose sensitive information belonging to the other user that they would not normally be able to access. The highest risk of this flaw is to data confidentiality. This flaw affects Python versions before 3.8.9, Python versions before 3.9.3 and Python versions before 3.10.0a7.

CVSS3: 5.7
redhat
больше 4 лет назад

There's a flaw in Python 3's pydoc. A local or adjacent attacker who discovers or is able to convince another local or adjacent user to start a pydoc server could access the server and use it to disclose sensitive information belonging to the other user that they would not normally be able to access. The highest risk of this flaw is to data confidentiality. This flaw affects Python versions before 3.8.9, Python versions before 3.9.3 and Python versions before 3.10.0a7.

CVSS3: 5.7
nvd
около 4 лет назад

There's a flaw in Python 3's pydoc. A local or adjacent attacker who discovers or is able to convince another local or adjacent user to start a pydoc server could access the server and use it to disclose sensitive information belonging to the other user that they would not normally be able to access. The highest risk of this flaw is to data confidentiality. This flaw affects Python versions before 3.8.9, Python versions before 3.9.3 and Python versions before 3.10.0a7.

CVSS3: 5.7
debian
около 4 лет назад

There's a flaw in Python 3's pydoc. A local or adjacent attacker who d ...

suse-cvrf
около 4 лет назад

Security update for python3