Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-RU-2025:0796-1

Опубликовано: 06 мар. 2025
Источник: suse-cvrf

Описание

Recommended update for python3-M2Crypto

This update for python3-M2Crypto fixes the following issues:

  • Fix spelling of BSD-2-Clause license.
  • Update to 0.44.0:
  • The real license is BSD 2-Clause, not MIT.
  • Remove python-M2Crypto.keyring, because PyPI broke GPG support
  • Build for modern python stack on SLE/Leap
  • require setuptools
  • Make tests running again.
  • Remove unnecessary fdupes call
  • Add python-typing as a dependency
  • SLE12 requires swig3 for a successful build, too

Список пакетов

Container suse/manager/5.0/x86_64/server:latest
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-Azure-3P
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-Azure-Basic
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-Azure-Standard
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-BYOS
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-BYOS-Azure
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-BYOS-EC2
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-BYOS-GCE
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-EC2
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-EC2-ECS-HVM
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-GCE
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-HPC
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-HPC-Azure
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-HPC-BYOS
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-HPC-BYOS-Azure
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-HPC-BYOS-EC2
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-HPC-BYOS-GCE
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-HPC-EC2
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-HPC-GCE
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-Hardened-BYOS
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-Hardened-BYOS-Azure
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-Hardened-BYOS-EC2
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-Hardened-BYOS-GCE
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-Azure
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-Azure-3P
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-BYOS
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-BYOS-Azure
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-BYOS-EC2
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-BYOS-GCE
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-EC2
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-GCE
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-Hardened
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-Hardened-Azure
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-Hardened-BYOS
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-Hardened-BYOS-Azure
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-Hardened-BYOS-EC2
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-Hardened-BYOS-GCE
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-Hardened-EC2
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAP-Hardened-GCE
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAPCAL
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAPCAL-Azure
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAPCAL-EC2
python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-SAPCAL-GCE
python3-M2Crypto-0.44.0-150600.19.3.1
Image server-image
python3-M2Crypto-0.44.0-150600.19.3.1
SUSE Linux Enterprise Module for Basesystem 15 SP6
python3-M2Crypto-0.44.0-150600.19.3.1
openSUSE Leap 15.6
python3-M2Crypto-0.44.0-150600.19.3.1
python3-M2Crypto-doc-0.44.0-150600.19.3.1

Описание

A flaw was found in all released versions of m2crypto, where they are vulnerable to Bleichenbacher timing attacks in the RSA decryption API via the timed processing of valid PKCS#1 v1.5 Ciphertext. The highest threat from this vulnerability is to confidentiality.


Затронутые продукты
Container suse/manager/5.0/x86_64/server:latest:python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-Azure-3P:python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-Azure-Basic:python3-M2Crypto-0.44.0-150600.19.3.1
Image SLES15-SP6-Azure-Standard:python3-M2Crypto-0.44.0-150600.19.3.1

Ссылки