python3-3.6.8-21.0.2.el7.AXS7
エラータID: AXSA:2024-8914:06
Python is an accessible, high-level, dynamically typed, interpreted programming
language, designed with an emphasis on code readability.
It includes an extensive standard library, and has a vast ecosystem of
third-party libraries.
The python3 package provides the "python3" executable: the reference interpreter
for the Python language, version 3.
The majority of its standard library is provided in the python3-libs package,
which should be installed automatically along with python3.
The remaining parts of the Python standard library are broken out into the
python3-tkinter and python3-test packages, which may need to be installed
separately.
Documentation for Python is provided in the python3-docs package.
Packages containing additional libraries for Python are generally named with the
"python3-" prefix.
Security Fix(es):
* CVE-2024-6232: remove backtracking when parsing tarfile headers
* CVE-2024-7592: fix quadratic complexity in parsing "-quoted cookie values
with backslashes
CVE(s):
CVE-2024-7592
There is a LOW severity vulnerability affecting CPython, specifically the 'http.cookies' standard library module. When parsing cookies that contained backslashes for quoted characters in the cookie value, the parser would use an algorithm with quadratic complexity, resulting in excess CPU resources being used while parsing the value.
CVE-2024-6232
There is a MEDIUM severity vulnerability affecting CPython. Regular expressions that allowed excessive backtracking during tarfile.TarFile header parsing are vulnerable to ReDoS via specifically-crafted tar archives.
Update packages.
There is a MEDIUM severity vulnerability affecting CPython. Regular expressions that allowed excessive backtracking during tarfile.TarFile header parsing are vulnerable to ReDoS via specifically-crafted tar archives.
There is a LOW severity vulnerability affecting CPython, specifically the 'http.cookies' standard library module. When parsing cookies that contained backslashes for quoted characters in the cookie value, the parser would use an algorithm with quadratic complexity, resulting in excess CPU resources being used while parsing the value.
N/A
Asianux Server 7 for x86_64
- python3-3.6.8-21.0.2.el7.AXS7.i686.rpm
MD5: fad5d80296c803f61ebd286c0fae289b
SHA-256: 8ad1940769362f98ca9a81dd5d1c31e15d193ef02cca3884344886d096aa20f1
Size: 71.02 kB - python3-3.6.8-21.0.2.el7.AXS7.x86_64.rpm
MD5: 10e0b82a912c62c869ebd48ce1a20de6
SHA-256: 4c1fc016553c4bc64a8add1442c7968d2f213cdfc144310749cccb3ccb849b0d
Size: 70.96 kB - python3-debug-3.6.8-21.0.2.el7.AXS7.i686.rpm
MD5: 4e555a69d3d1adeaee7c2dc9ff73656f
SHA-256: b4e38685b742f8b1deb5d74ea8b061df6ef364ba944e998996e54573b5aa0513
Size: 2.42 MB - python3-debug-3.6.8-21.0.2.el7.AXS7.x86_64.rpm
MD5: 6d79320a282664a3b7ac82f3c216a079
SHA-256: d9d647a949f6a4f14136278ed0776e583b0354fa6a6f095404003c0722acd31d
Size: 2.64 MB - python3-devel-3.6.8-21.0.2.el7.AXS7.i686.rpm
MD5: 165c1b7cd9c48bff8b53db61cfd50d92
SHA-256: 3e2b5b52cbbe08a2c95ced857c6290c18126ac184fac4c3b4dc1744d915e1154
Size: 217.84 kB - python3-devel-3.6.8-21.0.2.el7.AXS7.x86_64.rpm
MD5: 0c5bd2a21f5a58968b19b7ea5d860690
SHA-256: 327349cd6fa22206ddea0746666a831a307ab151edff600b3e1c4ea518e51a65
Size: 217.65 kB - python3-idle-3.6.8-21.0.2.el7.AXS7.i686.rpm
MD5: ffdc7ab24f1f3691129d83910b0eb671
SHA-256: 6f3d5feb6b4c554e26718e275bac240267fe0426b25307aa200bfaa82e4b1bc4
Size: 780.21 kB - python3-idle-3.6.8-21.0.2.el7.AXS7.x86_64.rpm
MD5: da885e02a7c47643b53f2b1dc8270aca
SHA-256: 2e1c627bc5765bcbabbc9a96d231c38c9555d6f079b08f9db32ca2e299b011c7
Size: 780.04 kB - python3-libs-3.6.8-21.0.2.el7.AXS7.i686.rpm
MD5: cf59eae6ea1c41a3357bd4bdda5fa507
SHA-256: ce1697ba04aaa723de9b47f8c37b93c0c3870e88d391cd0ead4bbbec5c9272cb
Size: 6.85 MB - python3-libs-3.6.8-21.0.2.el7.AXS7.x86_64.rpm
MD5: 903875a7da76853754d17ed5239a9430
SHA-256: ba0b9b0aefd1815a1f06173ddf07de875aabd20641e5ec0d316c14ca6e4e0eeb
Size: 6.95 MB - python3-test-3.6.8-21.0.2.el7.AXS7.i686.rpm
MD5: 5f0791621a41b8dc93c36ae914cc76e8
SHA-256: 16d8e1cd55e5007dd936aa4f166a20527439880660b8657e66f57339272d259f
Size: 7.26 MB - python3-test-3.6.8-21.0.2.el7.AXS7.x86_64.rpm
MD5: 7679a182a844474d34cc5f60ea20133a
SHA-256: e5f2bb3fbebbc452590033b368d81b041c6e13013dc7b926b28574cd50a7c805
Size: 7.26 MB - python3-tkinter-3.6.8-21.0.2.el7.AXS7.i686.rpm
MD5: b2657a12f8de6bd7331c9a11ac64379d
SHA-256: 38f311f8d74c8ea3cb5d3df319b7762604bf87bb2eb12fa4415e5d300775f809
Size: 366.41 kB - python3-tkinter-3.6.8-21.0.2.el7.AXS7.x86_64.rpm
MD5: d313d710ed0c894a2506479ab985e8bb
SHA-256: d094dc14e834a8e6c943e372ba2960071260cbcb6ed7f2edf63c3ebb5bf13815
Size: 366.34 kB