python3.9-3.9.14-1.el9.2

エラータID: AXSA:2023-5191:01

Release date: 
Thursday, March 2, 2023 - 00:31
Subject: 
python3.9-3.9.14-1.el9.2
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
Moderate
Description: 

Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.

Security Fix(es):

* Python: CPU denial of service via inefficient IDNA decoder (CVE-2022-45061)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2022-45061
An issue was discovered in Python before 3.11.1. An unnecessary quadratic algorithm exists in one path when processing some inputs to the IDNA (RFC 3490) decoder, such that a crafted, unreasonably long name being presented to the decoder could lead to a CPU denial of service. Hostnames are often supplied by remote servers that could be controlled by a malicious actor; in such a scenario, they could trigger excessive CPU consumption on the client attempting to make use of an attacker-supplied supposed hostname. For example, the attack payload could be placed in the Location header of an HTTP response with status code 302. A fix is planned in 3.11.1, 3.10.9, 3.9.16, 3.8.16, and 3.7.16.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. python3.9-3.9.14-1.el9.2.src.rpm
    MD5: bbc4cf208f563148b17ff6eda3c1c2cd
    SHA-256: 790f5818e8ef326b32f234b83aa64aa626246bbdf5578d079d5c9d6a4fe40ac4
    Size: 19.43 MB

Asianux Server 9 for x86_64
  1. python3-3.9.14-1.el9.2.i686.rpm
    MD5: 2bb964ec079f80a7706eb8113277db69
    SHA-256: 0b2460a31090e43404c9311e762e2b86da7b0cad6b67133a89f2c54c3a5131c8
    Size: 27.26 kB
  2. python3-3.9.14-1.el9.2.x86_64.rpm
    MD5: 8bf879daffd6ccc16b4ea49d3c650231
    SHA-256: c0af49e407f7f8f804f029a5859bb56348d9226412c0389698c1cf4f251e0eb3
    Size: 27.18 kB
  3. python3-debug-3.9.14-1.el9.2.i686.rpm
    MD5: cd2c61751ea5354b51c774c51a51c2ea
    SHA-256: 2e6cccbed8c0fdc227097cd4210cc38715d62a9aeed33e1f8d500b8bec4ce14d
    Size: 2.82 MB
  4. python3-debug-3.9.14-1.el9.2.x86_64.rpm
    MD5: 0f9f6a0ceff9d034fbd3eec790778587
    SHA-256: 8cf6dd99e0dd5acf2f110dd51f3057bb276f2dd2a047e2ec726f257610b28dc9
    Size: 2.98 MB
  5. python3-devel-3.9.14-1.el9.2.i686.rpm
    MD5: c921be7ac112050d500c19e66ef6b222
    SHA-256: 0b733d08bdd6d1f11cb5c5d765eeb12236f867116a2a780a67eacf6e23bdc381
    Size: 206.74 kB
  6. python3-devel-3.9.14-1.el9.2.x86_64.rpm
    MD5: 427685208acae1fc6e32d3829866dd9e
    SHA-256: 552c33c340c21ed0995c5641bfe427133f7f86ec995368cd4fcd217dcc0cae8f
    Size: 206.70 kB
  7. python3-idle-3.9.14-1.el9.2.i686.rpm
    MD5: e0dfababd742ee70b4b10e9e0e23cf7f
    SHA-256: 4bd142242de1611a63fa4284015ebe6bf70b2fabfdd2ca257b06824cac46fbc7
    Size: 771.92 kB
  8. python3-idle-3.9.14-1.el9.2.x86_64.rpm
    MD5: 8d737c974b8c5db4d6f027e2e3668fee
    SHA-256: a3b57db57527b2f65997bb9941f4fad082514f0da6f1a7cf109ea02f8871f0e4
    Size: 771.87 kB
  9. python3-libs-3.9.14-1.el9.2.i686.rpm
    MD5: 9cd9c2915cb2e0733455a91b88f47147
    SHA-256: d06a00103c89e8873d950946394adc071d83ea1ab6ae611b31330cd7fadd23aa
    Size: 7.35 MB
  10. python3-libs-3.9.14-1.el9.2.x86_64.rpm
    MD5: 658db3330de202d7a4309c912417c2f1
    SHA-256: 268dd97e136e2b4303941ae94f8444182dc9ee892f5f36501aa7da4a41fa7079
    Size: 7.28 MB
  11. python3-test-3.9.14-1.el9.2.i686.rpm
    MD5: 201e6efbebd2e8d6418b3323ccdba81a
    SHA-256: 1152ff7f3583f48140f58b990f92b87f45ba76a760b3a1066a61f47ece0546d4
    Size: 9.26 MB
  12. python3-test-3.9.14-1.el9.2.x86_64.rpm
    MD5: 3664311696d8bbcfd899a65e3f2b27e4
    SHA-256: 05092dbecc036a6f334d571327b88348ae94808e4ff0f4e6b5232217b5ba701e
    Size: 9.26 MB
  13. python3-tkinter-3.9.14-1.el9.2.i686.rpm
    MD5: 6e9a279ef4a671d2360ce78d268ed3ab
    SHA-256: bde651a7f456ee68815f5b29949020983a4226a07fff4fb3cd38ae55af248341
    Size: 311.66 kB
  14. python3-tkinter-3.9.14-1.el9.2.x86_64.rpm
    MD5: 402e95b2c5f8cd46cf0c3f8e7e87f521
    SHA-256: 3f36142723529fd3c3e51c8637967b467e78be5400700a583f338afa0d54d1e8
    Size: 310.21 kB
  15. python-unversioned-command-3.9.14-1.el9.2.noarch.rpm
    MD5: b983c547714db53f3ea9ef2cec97ed95
    SHA-256: 53ed9e648226d1b0567bf339942680a531f16ebe0927c77fa425dac48fa2f643
    Size: 10.78 kB