Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-9130

Опубликовано: 22 мар. 2021
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2021-9130: python38:3.8 security update (IMPORTANT)

python38 [3.8.3-3.0.1]

  • Fix buffer overflow in PyCArg_repr [Orabug: 32551171][CVE-2021-3177]

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

Module python38:3.8 is enabled

python38

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-Cython

0.29.14-4.module+el8.3.0+7824+e0098946

python38-PyMySQL

0.9.3-3.module+el8.3.0+7824+e0098946

python38-asn1crypto

1.2.0-3.module+el8.3.0+7824+e0098946

python38-babel

2.7.0-10.module+el8.3.0+7824+e0098946

python38-cffi

1.13.2-3.module+el8.3.0+7824+e0098946

python38-chardet

3.0.4-19.module+el8.3.0+7824+e0098946

python38-cryptography

2.8-3.module+el8.3.0+7824+e0098946

python38-debug

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-devel

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-idle

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-idna

2.8-6.module+el8.3.0+7824+e0098946

python38-jinja2

2.10.3-4.module+el8.3.0+7824+e0098946

python38-libs

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-lxml

4.4.1-4.module+el8.3.0+7824+e0098946

python38-markupsafe

1.1.1-6.module+el8.3.0+7824+e0098946

python38-mod_wsgi

4.6.8-3.module+el8.3.0+7824+e0098946

python38-numpy

1.17.3-5.module+el8.3.0+7824+e0098946

python38-numpy-doc

1.17.3-5.module+el8.3.0+7824+e0098946

python38-numpy-f2py

1.17.3-5.module+el8.3.0+7824+e0098946

python38-pip

19.3.1-1.module+el8.3.0+7824+e0098946

python38-pip-wheel

19.3.1-1.module+el8.3.0+7824+e0098946

python38-ply

3.11-8.module+el8.3.0+7824+e0098946

python38-psutil

5.6.4-3.module+el8.3.0+7824+e0098946

python38-psycopg2

2.8.4-4.module+el8.3.0+7824+e0098946

python38-psycopg2-doc

2.8.4-4.module+el8.3.0+7824+e0098946

python38-psycopg2-tests

2.8.4-4.module+el8.3.0+7824+e0098946

python38-pycparser

2.19-3.module+el8.3.0+7824+e0098946

python38-pysocks

1.7.1-4.module+el8.3.0+7824+e0098946

python38-pytz

2019.3-3.module+el8.3.0+7824+e0098946

python38-pyyaml

5.3.1-1.module+el8.3.0+7824+e0098946

python38-requests

2.22.0-9.module+el8.3.0+7824+e0098946

python38-rpm-macros

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-scipy

1.3.1-4.module+el8.3.0+7824+e0098946

python38-setuptools

41.6.0-4.module+el8.3.0+7824+e0098946

python38-setuptools-wheel

41.6.0-4.module+el8.3.0+7824+e0098946

python38-six

1.12.0-9.module+el8.3.0+7824+e0098946

python38-test

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-tkinter

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-urllib3

1.25.7-4.module+el8.3.0+7824+e0098946

python38-wheel

0.33.6-5.module+el8.3.0+7824+e0098946

python38-wheel-wheel

0.33.6-5.module+el8.3.0+7824+e0098946

Oracle Linux x86_64

Module python38:3.8 is enabled

python38

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-Cython

0.29.14-4.module+el8.3.0+7824+e0098946

python38-PyMySQL

0.9.3-3.module+el8.3.0+7824+e0098946

python38-asn1crypto

1.2.0-3.module+el8.3.0+7824+e0098946

python38-babel

2.7.0-10.module+el8.3.0+7824+e0098946

python38-cffi

1.13.2-3.module+el8.3.0+7824+e0098946

python38-chardet

3.0.4-19.module+el8.3.0+7824+e0098946

python38-cryptography

2.8-3.module+el8.3.0+7824+e0098946

python38-debug

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-devel

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-idle

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-idna

2.8-6.module+el8.3.0+7824+e0098946

python38-jinja2

2.10.3-4.module+el8.3.0+7824+e0098946

python38-libs

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-lxml

4.4.1-4.module+el8.3.0+7824+e0098946

python38-markupsafe

1.1.1-6.module+el8.3.0+7824+e0098946

python38-mod_wsgi

4.6.8-3.module+el8.3.0+7824+e0098946

python38-numpy

1.17.3-5.module+el8.3.0+7824+e0098946

python38-numpy-doc

1.17.3-5.module+el8.3.0+7824+e0098946

python38-numpy-f2py

1.17.3-5.module+el8.3.0+7824+e0098946

python38-pip

19.3.1-1.module+el8.3.0+7824+e0098946

python38-pip-wheel

19.3.1-1.module+el8.3.0+7824+e0098946

python38-ply

3.11-8.module+el8.3.0+7824+e0098946

python38-psutil

5.6.4-3.module+el8.3.0+7824+e0098946

python38-psycopg2

2.8.4-4.module+el8.3.0+7824+e0098946

python38-psycopg2-doc

2.8.4-4.module+el8.3.0+7824+e0098946

python38-psycopg2-tests

2.8.4-4.module+el8.3.0+7824+e0098946

python38-pycparser

2.19-3.module+el8.3.0+7824+e0098946

python38-pysocks

1.7.1-4.module+el8.3.0+7824+e0098946

python38-pytz

2019.3-3.module+el8.3.0+7824+e0098946

python38-pyyaml

5.3.1-1.module+el8.3.0+7824+e0098946

python38-requests

2.22.0-9.module+el8.3.0+7824+e0098946

python38-rpm-macros

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-scipy

1.3.1-4.module+el8.3.0+7824+e0098946

python38-setuptools

41.6.0-4.module+el8.3.0+7824+e0098946

python38-setuptools-wheel

41.6.0-4.module+el8.3.0+7824+e0098946

python38-six

1.12.0-9.module+el8.3.0+7824+e0098946

python38-test

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-tkinter

3.8.3-3.0.1.module+el8.3.0+el8+9681+09f2c1ca

python38-urllib3

1.25.7-4.module+el8.3.0+7824+e0098946

python38-wheel

0.33.6-5.module+el8.3.0+7824+e0098946

python38-wheel-wheel

0.33.6-5.module+el8.3.0+7824+e0098946

Связанные CVE

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 4 лет назад

Python 3.x through 3.9.1 has a buffer overflow in PyCArg_repr in _ctypes/callproc.c, which may lead to remote code execution in certain Python applications that accept floating-point numbers as untrusted input, as demonstrated by a 1e300 argument to c_double.from_param. This occurs because sprintf is used unsafely.

CVSS3: 5.9
redhat
больше 4 лет назад

Python 3.x through 3.9.1 has a buffer overflow in PyCArg_repr in _ctypes/callproc.c, which may lead to remote code execution in certain Python applications that accept floating-point numbers as untrusted input, as demonstrated by a 1e300 argument to c_double.from_param. This occurs because sprintf is used unsafely.

CVSS3: 9.8
nvd
больше 4 лет назад

Python 3.x through 3.9.1 has a buffer overflow in PyCArg_repr in _ctypes/callproc.c, which may lead to remote code execution in certain Python applications that accept floating-point numbers as untrusted input, as demonstrated by a 1e300 argument to c_double.from_param. This occurs because sprintf is used unsafely.

CVSS3: 9.8
msrc
больше 4 лет назад

Описание отсутствует

CVSS3: 9.8
debian
больше 4 лет назад

Python 3.x through 3.9.1 has a buffer overflow in PyCArg_repr in _ctyp ...

Уязвимость ELSA-2021-9130