Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2022-7592

Опубликовано: 15 нояб. 2022
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2022-7592: python39:3.9 and python39-devel:3.9 security update (MODERATE)

Cython [0.29.21-5]

  • Convert from Fedora to the python39 module in RHEL8
  • Resolves: rhbz#1877430

[0.29.21-4]

  • Drop build dependency on coverage

[0.29.21-3]

[0.29.21-2]

  • Re-enable tests.

[0.29.21-1]

  • 0.29.21

scipy [1.5.4-3]

  • Specify LDFLAGS explicitly
  • Force preprocessing of Fortran sources to make annobin record proper flags
  • Resolves: rhbz#1778983 rhbz#1877430

[1.5.4-2]

  • Convert from Fedora to the python39 module in RHEL8
  • Resolves: rhbz#1877430

[1.5.4-1]

  • New upstream release 1.5.4
  • Increase test timeout, 300 seconds is not always enough for test_logpdf_overflow on s390x resolves: #1894887

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

Module python39:3.9 is enabled

python39

3.9.13-1.module+el8.7.0+20798+772c6867

python39-PyMySQL

0.10.1-2.module+el8.4.0+20109+b7b1db01

python39-cffi

1.14.3-2.module+el8.4.0+20109+b7b1db01

python39-chardet

3.0.4-19.module+el8.4.0+20109+b7b1db01

python39-cryptography

3.3.1-2.module+el8.4.0+20109+b7b1db01

python39-devel

3.9.13-1.module+el8.7.0+20798+772c6867

python39-idle

3.9.13-1.module+el8.7.0+20798+772c6867

python39-idna

2.10-3.module+el8.4.0+20109+b7b1db01

python39-libs

3.9.13-1.module+el8.7.0+20798+772c6867

python39-lxml

4.6.5-1.module+el8.6.0+20625+ee813db2

python39-mod_wsgi

4.7.1-5.module+el8.7.0+20870+babacad2

python39-numpy

1.19.4-3.module+el8.5.0+20364+c7fe1181

python39-numpy-doc

1.19.4-3.module+el8.5.0+20364+c7fe1181

python39-numpy-f2py

1.19.4-3.module+el8.5.0+20364+c7fe1181

python39-pip

20.2.4-7.module+el8.6.0+20625+ee813db2

python39-pip-wheel

20.2.4-7.module+el8.6.0+20625+ee813db2

python39-ply

3.11-10.module+el8.4.0+20109+b7b1db01

python39-psutil

5.8.0-4.module+el8.4.0+20109+b7b1db01

python39-psycopg2

2.8.6-2.module+el8.4.0+20109+b7b1db01

python39-psycopg2-doc

2.8.6-2.module+el8.4.0+20109+b7b1db01

python39-psycopg2-tests

2.8.6-2.module+el8.4.0+20109+b7b1db01

python39-pycparser

2.20-3.module+el8.4.0+20109+b7b1db01

python39-pysocks

1.7.1-4.module+el8.4.0+20109+b7b1db01

python39-pyyaml

5.4.1-1.module+el8.5.0+20364+c7fe1181

python39-requests

2.25.0-2.module+el8.4.0+20109+b7b1db01

python39-rpm-macros

3.9.13-1.module+el8.7.0+20798+772c6867

python39-scipy

1.5.4-3.module+el8.4.0+20109+b7b1db01

python39-setuptools

50.3.2-4.module+el8.5.0+20364+c7fe1181

python39-setuptools-wheel

50.3.2-4.module+el8.5.0+20364+c7fe1181

python39-six

1.15.0-3.module+el8.4.0+20109+b7b1db01

python39-test

3.9.13-1.module+el8.7.0+20798+772c6867

python39-tkinter

3.9.13-1.module+el8.7.0+20798+772c6867

python39-toml

0.10.1-5.module+el8.4.0+20109+b7b1db01

python39-urllib3

1.25.10-4.module+el8.5.0+20364+c7fe1181

python39-wheel

0.35.1-4.module+el8.5.0+20364+c7fe1181

python39-wheel-wheel

0.35.1-4.module+el8.5.0+20364+c7fe1181

Module python39-devel:3.9 is enabled

python39-Cython

0.29.21-5.module+el8.4.0+20109+b7b1db01

python39-attrs

20.3.0-2.module+el8.4.0+20109+b7b1db01

python39-debug

3.9.13-1.module+el8.7.0+20798+772c6867

python39-iniconfig

1.1.1-2.module+el8.4.0+20109+b7b1db01

python39-more-itertools

8.5.0-2.module+el8.4.0+20109+b7b1db01

python39-packaging

20.4-4.module+el8.4.0+20109+b7b1db01

python39-pluggy

0.13.1-3.module+el8.4.0+20109+b7b1db01

python39-py

1.10.0-1.module+el8.4.0+20109+b7b1db01

python39-pybind11

2.7.1-1.module+el8.6.0+20625+ee813db2

python39-pybind11-devel

2.7.1-1.module+el8.6.0+20625+ee813db2

python39-pyparsing

2.4.7-5.module+el8.4.0+20109+b7b1db01

python39-pytest

6.0.2-2.module+el8.4.0+20109+b7b1db01

python39-wcwidth

0.2.5-3.module+el8.4.0+20109+b7b1db01

Oracle Linux x86_64

Module python39:3.9 is enabled

python39

3.9.13-1.module+el8.7.0+20798+772c6867

python39-PyMySQL

0.10.1-2.module+el8.4.0+20109+b7b1db01

python39-cffi

1.14.3-2.module+el8.4.0+20109+b7b1db01

python39-chardet

3.0.4-19.module+el8.4.0+20109+b7b1db01

python39-cryptography

3.3.1-2.module+el8.4.0+20109+b7b1db01

python39-devel

3.9.13-1.module+el8.7.0+20798+772c6867

python39-idle

3.9.13-1.module+el8.7.0+20798+772c6867

python39-idna

2.10-3.module+el8.4.0+20109+b7b1db01

python39-libs

3.9.13-1.module+el8.7.0+20798+772c6867

python39-lxml

4.6.5-1.module+el8.6.0+20625+ee813db2

python39-mod_wsgi

4.7.1-5.module+el8.7.0+20870+babacad2

python39-numpy

1.19.4-3.module+el8.5.0+20364+c7fe1181

python39-numpy-doc

1.19.4-3.module+el8.5.0+20364+c7fe1181

python39-numpy-f2py

1.19.4-3.module+el8.5.0+20364+c7fe1181

python39-pip

20.2.4-7.module+el8.6.0+20625+ee813db2

python39-pip-wheel

20.2.4-7.module+el8.6.0+20625+ee813db2

python39-ply

3.11-10.module+el8.4.0+20109+b7b1db01

python39-psutil

5.8.0-4.module+el8.4.0+20109+b7b1db01

python39-psycopg2

2.8.6-2.module+el8.4.0+20109+b7b1db01

python39-psycopg2-doc

2.8.6-2.module+el8.4.0+20109+b7b1db01

python39-psycopg2-tests

2.8.6-2.module+el8.4.0+20109+b7b1db01

python39-pycparser

2.20-3.module+el8.4.0+20109+b7b1db01

python39-pysocks

1.7.1-4.module+el8.4.0+20109+b7b1db01

python39-pyyaml

5.4.1-1.module+el8.5.0+20364+c7fe1181

python39-requests

2.25.0-2.module+el8.4.0+20109+b7b1db01

python39-rpm-macros

3.9.13-1.module+el8.7.0+20798+772c6867

python39-scipy

1.5.4-3.module+el8.4.0+20109+b7b1db01

python39-setuptools

50.3.2-4.module+el8.5.0+20364+c7fe1181

python39-setuptools-wheel

50.3.2-4.module+el8.5.0+20364+c7fe1181

python39-six

1.15.0-3.module+el8.4.0+20109+b7b1db01

python39-test

3.9.13-1.module+el8.7.0+20798+772c6867

python39-tkinter

3.9.13-1.module+el8.7.0+20798+772c6867

python39-toml

0.10.1-5.module+el8.4.0+20109+b7b1db01

python39-urllib3

1.25.10-4.module+el8.5.0+20364+c7fe1181

python39-wheel

0.35.1-4.module+el8.5.0+20364+c7fe1181

python39-wheel-wheel

0.35.1-4.module+el8.5.0+20364+c7fe1181

Module python39-devel:3.9 is enabled

python39-Cython

0.29.21-5.module+el8.4.0+20109+b7b1db01

python39-attrs

20.3.0-2.module+el8.4.0+20109+b7b1db01

python39-debug

3.9.13-1.module+el8.7.0+20798+772c6867

python39-iniconfig

1.1.1-2.module+el8.4.0+20109+b7b1db01

python39-more-itertools

8.5.0-2.module+el8.4.0+20109+b7b1db01

python39-packaging

20.4-4.module+el8.4.0+20109+b7b1db01

python39-pluggy

0.13.1-3.module+el8.4.0+20109+b7b1db01

python39-py

1.10.0-1.module+el8.4.0+20109+b7b1db01

python39-pybind11

2.7.1-1.module+el8.6.0+20625+ee813db2

python39-pybind11-devel

2.7.1-1.module+el8.6.0+20625+ee813db2

python39-pyparsing

2.4.7-5.module+el8.4.0+20109+b7b1db01

python39-pytest

6.0.2-2.module+el8.4.0+20109+b7b1db01

python39-wcwidth

0.2.5-3.module+el8.4.0+20109+b7b1db01

Связанные CVE

Связанные уязвимости

CVSS3: 7.6
ubuntu
около 3 лет назад

In Python (aka CPython) up to 3.10.8, the mailcap module does not add escape characters into commands discovered in the system mailcap file. This may allow attackers to inject shell commands into applications that call mailcap.findmatch with untrusted input (if they lack validation of user-provided filenames or arguments). The fix is also back-ported to 3.7, 3.8, 3.9

CVSS3: 7.6
redhat
почти 10 лет назад

In Python (aka CPython) up to 3.10.8, the mailcap module does not add escape characters into commands discovered in the system mailcap file. This may allow attackers to inject shell commands into applications that call mailcap.findmatch with untrusted input (if they lack validation of user-provided filenames or arguments). The fix is also back-ported to 3.7, 3.8, 3.9

CVSS3: 7.6
nvd
около 3 лет назад

In Python (aka CPython) up to 3.10.8, the mailcap module does not add escape characters into commands discovered in the system mailcap file. This may allow attackers to inject shell commands into applications that call mailcap.findmatch with untrusted input (if they lack validation of user-provided filenames or arguments). The fix is also back-ported to 3.7, 3.8, 3.9

CVSS3: 7.6
msrc
около 3 лет назад

Описание отсутствует

CVSS3: 7.6
debian
около 3 лет назад

In Python (aka CPython) up to 3.10.8, the mailcap module does not add ...