python3.9-3.9.10-3.el9
エラータID: AXSA:2022-4535:03
Release date:
Monday, December 26, 2022 - 09:26
Subject:
python3.9-3.9.10-3.el9
Affected Channels:
MIRACLE LINUX 9 for x86_64
Severity:
Moderate
Description:
Python is an interpreted, interactive, object-oriented programming language,
which includes modules, classes, exceptions, very high level dynamic data types
and dynamic typing. Python supports interfaces to many system calls and
libraries, as well as to various windowing systems.
Security Fix(es):
python: int() type in PyLong_FromString() does not limit amount of digits
converting text to int leading to DoS (CVE-2020-10735)
For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.
CVE(s):
CVE-2020-10735
Solution:
Update packages.
CVEs:
CVE-2020-10735
A flaw was found in python. In algorithms with quadratic time complexity using non-binary bases, when using int("text"), a system could take 50ms to parse an int string with 100,000 digits and 5s for 1,000,000 digits (float, decimal, int.from_bytes(), and int() for binary bases 2, 4, 8, 16, and 32 are not affected). The highest threat from this vulnerability is to system availability.
A flaw was found in python. In algorithms with quadratic time complexity using non-binary bases, when using int("text"), a system could take 50ms to parse an int string with 100,000 digits and 5s for 1,000,000 digits (float, decimal, int.from_bytes(), and int() for binary bases 2, 4, 8, 16, and 32 are not affected). The highest threat from this vulnerability is to system availability.
Additional Info:
N/A
Download:
SRPMS
- python3.9-3.9.10-3.el9.src.rpm
MD5: 8d86df3f8921399118ae35c03198f56d
SHA-256: ceb5f37bea816a49f7372b1b1d00c93b55c2c8efb7ea51e5360ecc8370ff4fc9
Size: 18.87 MB
Asianux Server 9 for x86_64
- python3-3.9.10-3.el9.x86_64.rpm
MD5: 26be3f2cffc9c9940cea0410ee305939
SHA-256: 5064a5675ead6c4659d7a720e0788cc18d74294626dc0a67847b4d58e9c9a16d
Size: 27.22 kB - python3-debug-3.9.10-3.el9.x86_64.rpm
MD5: 8a4863f7e563f0b7b62b5c3aa13a5502
SHA-256: 31059a88c2802c2f9fdda8163b4cc9601a2764cdd6ea5211653aaab6e6a47314
Size: 2.98 MB - python3-devel-3.9.10-3.el9.x86_64.rpm
MD5: 43ac418ca99b0159cc95ed1b08763ad1
SHA-256: 95421e8f0d84e258a73780c62375b35aa6bd6b58509544b08680bd1c705af769
Size: 206.29 kB - python3-idle-3.9.10-3.el9.x86_64.rpm
MD5: 345ab7ca58701ef5c9c74e207d06ea0f
SHA-256: 2a449ed2e33b4edcc64deefeb73d0bae9e10bbca11963127d910acf72bcc2ade
Size: 736.41 kB - python3-libs-3.9.10-3.el9.x86_64.rpm
MD5: ac7588029fc0626ba0f7f89f4f392885
SHA-256: 3e872f710240012fb64bfe69f59c8204213c3cf377096046d9e616e1262a3fb9
Size: 7.28 MB - python3-test-3.9.10-3.el9.x86_64.rpm
MD5: eb457213f4acdc1a5baed5aadad72c43
SHA-256: 70a841ea966fe09df00d44652fb3dadf3fbc8880933555a2176b907787796550
Size: 9.23 MB - python3-tkinter-3.9.10-3.el9.x86_64.rpm
MD5: 374c0add704844b4644cacfddd6ea92e
SHA-256: 4bbbed1f2544019ea2471ef2c7c337fa49754b38a73daedef1e9338dcf49125c
Size: 310.11 kB - python-unversioned-command-3.9.10-3.el9.noarch.rpm
MD5: 74bbaa3822171d9f852a4c054421ab14
SHA-256: de386b098d92677155054ddce5e2181dcbe4f5c1159cf5c0875e5b7973c7b8fa
Size: 10.58 kB - python3-3.9.10-3.el9.i686.rpm
MD5: 215ac34b13a8299062feb23907667a5c
SHA-256: c8071e0facf1cdc0241f3200c0a1c8e9c607ea5e0f130edcaeec46f0e903ee67
Size: 27.30 kB - python3-debug-3.9.10-3.el9.i686.rpm
MD5: 178b88bfbc1cdb49f39a799425fb1c6d
SHA-256: 582c3492f42017175926ad5151f83236e476ef8c4241290ec20e5e6140acaddf
Size: 2.82 MB - python3-devel-3.9.10-3.el9.i686.rpm
MD5: 86ec89a93ef1e5d7605dd2daaf9f181e
SHA-256: 9619318d3befbeb57424bf325cff4ef9fcfef3a617d9cdef277b372cb098e543
Size: 206.38 kB - python3-idle-3.9.10-3.el9.i686.rpm
MD5: 1f5fd097102caa488a0c6f2b34b1e5af
SHA-256: 66acf5755bc642a00852573f741ed156a01078022c910180e1267a4fce0b41d5
Size: 736.89 kB - python3-libs-3.9.10-3.el9.i686.rpm
MD5: 2dc82d6c180d8a64e4d8a6e5106b83ea
SHA-256: 8ffc3773d67fe6789f45aeadb46b0b8630147dd56a73b254da3abb63165e30e6
Size: 7.35 MB - python3-test-3.9.10-3.el9.i686.rpm
MD5: e39e56352adcadd3c821776a7f058979
SHA-256: dcd1323a59b41046e348b1feac30b448cf6033b81c0ee35e75959b67d5769fd8
Size: 9.24 MB - python3-tkinter-3.9.10-3.el9.i686.rpm
MD5: 796dc019af2a3b7797adb0c2bb96c847
SHA-256: 471cb5dea88d6aeacf641544a021681c6b76f1c847f1c872445dc8aee1af56c9
Size: 311.57 kB