Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2022-7581

Опубликовано: 15 нояб. 2022
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2022-7581: python38:3.8 and python38-devel:3.8 security update (MODERATE)

Cython [0.29.14-4]

  • Exclude unsupported i686 arch

[0.29.14-3]

  • Unversioned binaries renamed

[0.29.14-2]

  • Adjusted for Python 3.8 module in RHEL 8
  • without emacs plugin

[0.29.14-1]

  • Update to 0.29.14 (#1768034)
  • Python 2 subpackage has been removed

scipy [1.3.1-4]

  • Exclude unsupported i686 arch

[1.3.1-3]

  • Specify LDFLAGS explicitly
  • Force preprocessing of Fortran sources to make annobin record proper flags
  • Resolves: rhbz#1778983

[1.3.1-2]

  • Adjusted for Python 3.8 module in RHEL 8

[1.3.1-1]

  • Update to 1.3.1 (#1674101)
  • Drop Python 2 packages (not supported by SciPy >= 1.3)
  • Backported upstream patch for cKDTree (fixes FTBFS)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

Module python38-devel:3.8 is enabled

python38-atomicwrites

1.3.0-8.module+el8.2.0+5579+085cd3bd

python38-attrs

19.3.0-3.module+el8.2.0+5579+085cd3bd

python38-more-itertools

7.2.0-5.module+el8.2.0+5579+085cd3bd

python38-packaging

19.2-3.module+el8.2.0+5579+085cd3bd

python38-pluggy

0.13.0-3.module+el8.2.0+5579+085cd3bd

python38-py

1.8.0-8.module+el8.2.0+5579+085cd3bd

python38-pyparsing

2.4.5-3.module+el8.2.0+5579+085cd3bd

python38-pytest

4.6.6-3.module+el8.2.0+5579+085cd3bd

python38-wcwidth

0.1.7-16.module+el8.2.0+5579+085cd3bd

Module python38:3.8 is enabled

python38

3.8.13-1.module+el8.7.0+20792+22659047

python38-Cython

0.29.14-4.module+el8.4.0+20068+32a535e2

python38-PyMySQL

0.10.1-1.module+el8.4.0+20068+32a535e2

python38-asn1crypto

1.2.0-3.module+el8.4.0+20068+32a535e2

python38-babel

2.7.0-11.module+el8.5.0+20371+4f24d723

python38-cffi

1.13.2-3.module+el8.4.0+20068+32a535e2

python38-chardet

3.0.4-19.module+el8.4.0+20068+32a535e2

python38-cryptography

2.8-3.module+el8.4.0+20068+32a535e2

python38-debug

3.8.13-1.module+el8.7.0+20792+22659047

python38-devel

3.8.13-1.module+el8.7.0+20792+22659047

python38-idle

3.8.13-1.module+el8.7.0+20792+22659047

python38-idna

2.8-6.module+el8.4.0+20068+32a535e2

python38-jinja2

2.11.3-1.module+el8.7.0+20792+22659047

python38-libs

3.8.13-1.module+el8.7.0+20792+22659047

python38-lxml

4.4.1-7.module+el8.6.0+20556+9910889d

python38-markupsafe

1.1.1-6.module+el8.4.0+20068+32a535e2

python38-mod_wsgi

4.6.8-4.module+el8.7.0+20869+e1465161

python38-numpy

1.17.3-6.module+el8.5.0+20371+4f24d723

python38-numpy-doc

1.17.3-6.module+el8.5.0+20371+4f24d723

python38-numpy-f2py

1.17.3-6.module+el8.5.0+20371+4f24d723

python38-pip

19.3.1-6.module+el8.7.0+20792+22659047

python38-pip-wheel

19.3.1-6.module+el8.7.0+20792+22659047

python38-ply

3.11-10.module+el8.4.0+20068+32a535e2

python38-psutil

5.6.4-4.module+el8.5.0+20371+4f24d723

python38-psycopg2

2.8.4-4.module+el8.4.0+20068+32a535e2

python38-psycopg2-doc

2.8.4-4.module+el8.4.0+20068+32a535e2

python38-psycopg2-tests

2.8.4-4.module+el8.4.0+20068+32a535e2

python38-pycparser

2.19-3.module+el8.4.0+20068+32a535e2

python38-pysocks

1.7.1-4.module+el8.4.0+20068+32a535e2

python38-pytz

2019.3-3.module+el8.4.0+20068+32a535e2

python38-pyyaml

5.4.1-1.module+el8.5.0+20371+4f24d723

python38-requests

2.22.0-9.module+el8.4.0+20068+32a535e2

python38-rpm-macros

3.8.13-1.module+el8.7.0+20792+22659047

python38-scipy

1.3.1-4.module+el8.4.0+20068+32a535e2

python38-setuptools

41.6.0-5.module+el8.5.0+20371+4f24d723

python38-setuptools-wheel

41.6.0-5.module+el8.5.0+20371+4f24d723

python38-six

1.12.0-10.module+el8.4.0+20068+32a535e2

python38-test

3.8.13-1.module+el8.7.0+20792+22659047

python38-tkinter

3.8.13-1.module+el8.7.0+20792+22659047

python38-urllib3

1.25.7-5.module+el8.5.0+20371+4f24d723

python38-wheel

0.33.6-6.module+el8.5.0+20371+4f24d723

python38-wheel-wheel

0.33.6-6.module+el8.5.0+20371+4f24d723

Oracle Linux x86_64

Module python38-devel:3.8 is enabled

python38-atomicwrites

1.3.0-8.module+el8.2.0+5579+085cd3bd

python38-attrs

19.3.0-3.module+el8.2.0+5579+085cd3bd

python38-more-itertools

7.2.0-5.module+el8.2.0+5579+085cd3bd

python38-packaging

19.2-3.module+el8.2.0+5579+085cd3bd

python38-pluggy

0.13.0-3.module+el8.2.0+5579+085cd3bd

python38-py

1.8.0-8.module+el8.2.0+5579+085cd3bd

python38-pyparsing

2.4.5-3.module+el8.2.0+5579+085cd3bd

python38-pytest

4.6.6-3.module+el8.2.0+5579+085cd3bd

python38-wcwidth

0.1.7-16.module+el8.2.0+5579+085cd3bd

Module python38:3.8 is enabled

python38

3.8.13-1.module+el8.7.0+20792+22659047

python38-Cython

0.29.14-4.module+el8.4.0+20068+32a535e2

python38-PyMySQL

0.10.1-1.module+el8.4.0+20068+32a535e2

python38-asn1crypto

1.2.0-3.module+el8.4.0+20068+32a535e2

python38-babel

2.7.0-11.module+el8.5.0+20371+4f24d723

python38-cffi

1.13.2-3.module+el8.4.0+20068+32a535e2

python38-chardet

3.0.4-19.module+el8.4.0+20068+32a535e2

python38-cryptography

2.8-3.module+el8.4.0+20068+32a535e2

python38-debug

3.8.13-1.module+el8.7.0+20792+22659047

python38-devel

3.8.13-1.module+el8.7.0+20792+22659047

python38-idle

3.8.13-1.module+el8.7.0+20792+22659047

python38-idna

2.8-6.module+el8.4.0+20068+32a535e2

python38-jinja2

2.11.3-1.module+el8.7.0+20792+22659047

python38-libs

3.8.13-1.module+el8.7.0+20792+22659047

python38-lxml

4.4.1-7.module+el8.6.0+20556+9910889d

python38-markupsafe

1.1.1-6.module+el8.4.0+20068+32a535e2

python38-mod_wsgi

4.6.8-4.module+el8.7.0+20869+e1465161

python38-numpy

1.17.3-6.module+el8.5.0+20371+4f24d723

python38-numpy-doc

1.17.3-6.module+el8.5.0+20371+4f24d723

python38-numpy-f2py

1.17.3-6.module+el8.5.0+20371+4f24d723

python38-pip

19.3.1-6.module+el8.7.0+20792+22659047

python38-pip-wheel

19.3.1-6.module+el8.7.0+20792+22659047

python38-ply

3.11-10.module+el8.4.0+20068+32a535e2

python38-psutil

5.6.4-4.module+el8.5.0+20371+4f24d723

python38-psycopg2

2.8.4-4.module+el8.4.0+20068+32a535e2

python38-psycopg2-doc

2.8.4-4.module+el8.4.0+20068+32a535e2

python38-psycopg2-tests

2.8.4-4.module+el8.4.0+20068+32a535e2

python38-pycparser

2.19-3.module+el8.4.0+20068+32a535e2

python38-pysocks

1.7.1-4.module+el8.4.0+20068+32a535e2

python38-pytz

2019.3-3.module+el8.4.0+20068+32a535e2

python38-pyyaml

5.4.1-1.module+el8.5.0+20371+4f24d723

python38-requests

2.22.0-9.module+el8.4.0+20068+32a535e2

python38-rpm-macros

3.8.13-1.module+el8.7.0+20792+22659047

python38-scipy

1.3.1-4.module+el8.4.0+20068+32a535e2

python38-setuptools

41.6.0-5.module+el8.5.0+20371+4f24d723

python38-setuptools-wheel

41.6.0-5.module+el8.5.0+20371+4f24d723

python38-six

1.12.0-10.module+el8.4.0+20068+32a535e2

python38-test

3.8.13-1.module+el8.7.0+20792+22659047

python38-tkinter

3.8.13-1.module+el8.7.0+20792+22659047

python38-urllib3

1.25.7-5.module+el8.5.0+20371+4f24d723

python38-wheel

0.33.6-6.module+el8.5.0+20371+4f24d723

python38-wheel-wheel

0.33.6-6.module+el8.5.0+20371+4f24d723

Связанные CVE

Связанные уязвимости

CVSS3: 7.6
ubuntu
около 3 лет назад

In Python (aka CPython) up to 3.10.8, the mailcap module does not add escape characters into commands discovered in the system mailcap file. This may allow attackers to inject shell commands into applications that call mailcap.findmatch with untrusted input (if they lack validation of user-provided filenames or arguments). The fix is also back-ported to 3.7, 3.8, 3.9

CVSS3: 7.6
redhat
почти 10 лет назад

In Python (aka CPython) up to 3.10.8, the mailcap module does not add escape characters into commands discovered in the system mailcap file. This may allow attackers to inject shell commands into applications that call mailcap.findmatch with untrusted input (if they lack validation of user-provided filenames or arguments). The fix is also back-ported to 3.7, 3.8, 3.9

CVSS3: 7.6
nvd
около 3 лет назад

In Python (aka CPython) up to 3.10.8, the mailcap module does not add escape characters into commands discovered in the system mailcap file. This may allow attackers to inject shell commands into applications that call mailcap.findmatch with untrusted input (if they lack validation of user-provided filenames or arguments). The fix is also back-ported to 3.7, 3.8, 3.9

CVSS3: 7.6
msrc
около 3 лет назад

Описание отсутствует

CVSS3: 7.6
debian
около 3 лет назад

In Python (aka CPython) up to 3.10.8, the mailcap module does not add ...

Уязвимость ELSA-2022-7581