Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-3781

Опубликовано: 08 июл. 2023
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2023-3781: python38:3.8 and python38-devel:3.8 security update (IMPORTANT)

babel [2.7.0-11]

  • Fix CVE-2021-20095 Resolves: rhbz#1955615

Cython [0.29.14-4]

  • Exclude unsupported i686 arch

mod_wsgi [4.6.8-4]

  • Core dumped upon file upload >= 1GB Resolves: rhbz#2125171

numpy [1.17.3-6]

  • Adjusted the postun scriptlets to enable upgrading to RHEL 9
  • Resolves: rhbz#1933055

python38 [3.8.16-1.1]

  • Fix CVE-2023-24329

python3x-pip [19.3.1-6]

  • Backport patch to fix infinite recursion with pip wheel with in /u03/ksharma/errata_processing/work/el8/prod
  • Resolves: rhbz#2090006

python3x-setuptools [41.6.0-5]

  • Adjusted the postun scriptlets to enable upgrading to RHEL 9
  • Resolves: rhbz#1933055

python3x-six [1.12.0-10]

  • Rebuild from a new component name

python-asn1crypto python-cffi [1.13.2-3]

  • Exclude unsupported i686 arch

python-chardet python-cryptography [2.8-3]

  • Exclude unsupported i686 arch

python-idna [2.8-6]

  • Exclude unsupported i686 arch

python-jinja2 [2.11.3-1]

  • Update to 2.11.3.
  • Fix URL.
  • Remove patch that is included in this release. Resolves: rhbz#2086141.

python-lxml [4.4.1-7]

  • Security fix for CVE-2021-43818 Resolves: rhbz#2032569

python-markupsafe [1.1.1-6]

  • Exclude unsupported i686 arch

python-ply python-psutil [5.6.4-4]

  • Security fix for CVE-2019-18874: double free because of refcount mishandling Resolves: rhbz#1772014

python-psycopg2 [2.8.4-4]

  • Exclude unsupported i686 arch

python-pycparser [2.19-3]

  • Exclude unsupported i686 arch

python-PyMySQL [0.10.1-1]

  • Rebase to 0.10 version to add support for MariaDB ed25519 authentication mechanism

python-pysocks python-requests [2.22.0-9]

  • Exclude unsupported i686 arch

python-urllib3 [1.25.7-5]

  • Fix for CVE-2021-33503 Catastrophic backtracking in URL authority parser Resolves: rhbz#1968074
  • Update RECENT_DATE dynamically

python-wheel [0.33.6-6]

  • Adjusted the postun scriptlets to enable upgrading to RHEL 9
  • Resolves: rhbz#1933055

pytz [2019.3-3]

  • Exclude unsupported i686 arch

PyYAML scipy [1.3.1-4]

  • Exclude unsupported i686 arch

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

Module python38:3.8 is enabled

python38

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-Cython

0.29.14-4.module+el8.4.0+20068+32a535e2

python38-PyMySQL

0.10.1-1.module+el8.4.0+20068+32a535e2

python38-asn1crypto

1.2.0-3.module+el8.4.0+20068+32a535e2

python38-babel

2.7.0-11.module+el8.5.0+20371+4f24d723

python38-cffi

1.13.2-3.module+el8.4.0+20068+32a535e2

python38-chardet

3.0.4-19.module+el8.4.0+20068+32a535e2

python38-cryptography

2.8-3.module+el8.4.0+20068+32a535e2

python38-debug

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-devel

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-idle

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-idna

2.8-6.module+el8.4.0+20068+32a535e2

python38-jinja2

2.11.3-1.module+el8.7.0+20792+22659047

python38-libs

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-lxml

4.4.1-7.module+el8.6.0+20556+9910889d

python38-markupsafe

1.1.1-6.module+el8.4.0+20068+32a535e2

python38-mod_wsgi

4.6.8-4.module+el8.7.0+20869+e1465161

python38-numpy

1.17.3-6.module+el8.5.0+20371+4f24d723

python38-numpy-doc

1.17.3-6.module+el8.5.0+20371+4f24d723

python38-numpy-f2py

1.17.3-6.module+el8.5.0+20371+4f24d723

python38-pip

19.3.1-6.module+el8.7.0+20792+22659047

python38-pip-wheel

19.3.1-6.module+el8.7.0+20792+22659047

python38-ply

3.11-10.module+el8.4.0+20068+32a535e2

python38-psutil

5.6.4-4.module+el8.5.0+20371+4f24d723

python38-psycopg2

2.8.4-4.module+el8.4.0+20068+32a535e2

python38-psycopg2-doc

2.8.4-4.module+el8.4.0+20068+32a535e2

python38-psycopg2-tests

2.8.4-4.module+el8.4.0+20068+32a535e2

python38-pycparser

2.19-3.module+el8.4.0+20068+32a535e2

python38-pysocks

1.7.1-4.module+el8.4.0+20068+32a535e2

python38-pytz

2019.3-3.module+el8.4.0+20068+32a535e2

python38-pyyaml

5.4.1-1.module+el8.5.0+20371+4f24d723

python38-requests

2.22.0-9.module+el8.4.0+20068+32a535e2

python38-rpm-macros

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-scipy

1.3.1-4.module+el8.4.0+20068+32a535e2

python38-setuptools

41.6.0-5.module+el8.5.0+20371+4f24d723

python38-setuptools-wheel

41.6.0-5.module+el8.5.0+20371+4f24d723

python38-six

1.12.0-10.module+el8.4.0+20068+32a535e2

python38-test

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-tkinter

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-urllib3

1.25.7-5.module+el8.5.0+20371+4f24d723

python38-wheel

0.33.6-6.module+el8.5.0+20371+4f24d723

python38-wheel-wheel

0.33.6-6.module+el8.5.0+20371+4f24d723

Oracle Linux x86_64

Module python38:3.8 is enabled

python38

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-Cython

0.29.14-4.module+el8.4.0+20068+32a535e2

python38-PyMySQL

0.10.1-1.module+el8.4.0+20068+32a535e2

python38-asn1crypto

1.2.0-3.module+el8.4.0+20068+32a535e2

python38-babel

2.7.0-11.module+el8.5.0+20371+4f24d723

python38-cffi

1.13.2-3.module+el8.4.0+20068+32a535e2

python38-chardet

3.0.4-19.module+el8.4.0+20068+32a535e2

python38-cryptography

2.8-3.module+el8.4.0+20068+32a535e2

python38-debug

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-devel

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-idle

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-idna

2.8-6.module+el8.4.0+20068+32a535e2

python38-jinja2

2.11.3-1.module+el8.7.0+20792+22659047

python38-libs

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-lxml

4.4.1-7.module+el8.6.0+20556+9910889d

python38-markupsafe

1.1.1-6.module+el8.4.0+20068+32a535e2

python38-mod_wsgi

4.6.8-4.module+el8.7.0+20869+e1465161

python38-numpy

1.17.3-6.module+el8.5.0+20371+4f24d723

python38-numpy-doc

1.17.3-6.module+el8.5.0+20371+4f24d723

python38-numpy-f2py

1.17.3-6.module+el8.5.0+20371+4f24d723

python38-pip

19.3.1-6.module+el8.7.0+20792+22659047

python38-pip-wheel

19.3.1-6.module+el8.7.0+20792+22659047

python38-ply

3.11-10.module+el8.4.0+20068+32a535e2

python38-psutil

5.6.4-4.module+el8.5.0+20371+4f24d723

python38-psycopg2

2.8.4-4.module+el8.4.0+20068+32a535e2

python38-psycopg2-doc

2.8.4-4.module+el8.4.0+20068+32a535e2

python38-psycopg2-tests

2.8.4-4.module+el8.4.0+20068+32a535e2

python38-pycparser

2.19-3.module+el8.4.0+20068+32a535e2

python38-pysocks

1.7.1-4.module+el8.4.0+20068+32a535e2

python38-pytz

2019.3-3.module+el8.4.0+20068+32a535e2

python38-pyyaml

5.4.1-1.module+el8.5.0+20371+4f24d723

python38-requests

2.22.0-9.module+el8.4.0+20068+32a535e2

python38-rpm-macros

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-scipy

1.3.1-4.module+el8.4.0+20068+32a535e2

python38-setuptools

41.6.0-5.module+el8.5.0+20371+4f24d723

python38-setuptools-wheel

41.6.0-5.module+el8.5.0+20371+4f24d723

python38-six

1.12.0-10.module+el8.4.0+20068+32a535e2

python38-test

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-tkinter

3.8.16-1.module+el8.8.0+21120+5d2e4734.1

python38-urllib3

1.25.7-5.module+el8.5.0+20371+4f24d723

python38-wheel

0.33.6-6.module+el8.5.0+20371+4f24d723

python38-wheel-wheel

0.33.6-6.module+el8.5.0+20371+4f24d723

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
redhat
больше 2 лет назад

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
nvd
больше 2 лет назад

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
msrc
больше 2 лет назад

Описание отсутствует

CVSS3: 7.5
debian
больше 2 лет назад

An issue in the urllib.parse component of Python before 3.11.4 allows ...