Описание
Security update for python
This update for python fixes the following issues:
- CVE-2017-1000158: Fixed integer overflow in thePyString_DecodeEscape function (bsc#1068664).
Список пакетов
SUSE Linux Enterprise Server 11 SP4
libpython2_6-1_0-2.6.9-40.3.1
libpython2_6-1_0-32bit-2.6.9-40.3.1
libpython2_6-1_0-x86-2.6.9-40.3.1
python-2.6.9-40.3.1
python-32bit-2.6.9-40.3.1
python-base-2.6.9-40.3.1
python-base-32bit-2.6.9-40.3.1
python-base-x86-2.6.9-40.3.1
python-curses-2.6.9-40.3.1
python-demo-2.6.9-40.3.1
python-doc-2.6-8.40.3.1
python-doc-pdf-2.6-8.40.3.1
python-gdbm-2.6.9-40.3.1
python-idle-2.6.9-40.3.1
python-tk-2.6.9-40.3.1
python-x86-2.6.9-40.3.1
python-xml-2.6.9-40.3.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4
libpython2_6-1_0-2.6.9-40.3.1
libpython2_6-1_0-32bit-2.6.9-40.3.1
libpython2_6-1_0-x86-2.6.9-40.3.1
python-2.6.9-40.3.1
python-32bit-2.6.9-40.3.1
python-base-2.6.9-40.3.1
python-base-32bit-2.6.9-40.3.1
python-base-x86-2.6.9-40.3.1
python-curses-2.6.9-40.3.1
python-demo-2.6.9-40.3.1
python-doc-2.6-8.40.3.1
python-doc-pdf-2.6-8.40.3.1
python-gdbm-2.6.9-40.3.1
python-idle-2.6.9-40.3.1
python-tk-2.6.9-40.3.1
python-x86-2.6.9-40.3.1
python-xml-2.6.9-40.3.1
SUSE Linux Enterprise Software Development Kit 11 SP4
python-32bit-2.6.9-40.3.1
python-demo-2.6.9-40.3.1
python-devel-2.6.9-40.3.1
python-doc-2.6-8.40.3.1
python-doc-pdf-2.6-8.40.3.1
python-gdbm-2.6.9-40.3.1
python-idle-2.6.9-40.3.1
python-tk-2.6.9-40.3.1
Ссылки
- Link for SUSE-SU-2018:0768-1
- E-Mail link for SUSE-SU-2018:0768-1
- SUSE Security Ratings
- SUSE Bug 1068664
- SUSE CVE CVE-2017-1000158 page
Описание
CPython (aka Python) up to 2.7.13 is vulnerable to an integer overflow in the PyString_DecodeEscape function in stringobject.c, resulting in heap-based buffer overflow (and possible arbitrary code execution)
Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:libpython2_6-1_0-2.6.9-40.3.1
SUSE Linux Enterprise Server 11 SP4:libpython2_6-1_0-32bit-2.6.9-40.3.1
SUSE Linux Enterprise Server 11 SP4:libpython2_6-1_0-x86-2.6.9-40.3.1
SUSE Linux Enterprise Server 11 SP4:python-2.6.9-40.3.1
Ссылки
- CVE-2017-1000158
- SUSE Bug 1068664