python3.11-3.11.7-1.el8.ML.1
エラータID: AXSA:2024-8274:09
リリース日:
2024/06/15 Saturday - 08:47
題名:
python3.11-3.11.7-1.el8.ML.1
影響のあるチャネル:
Asianux Server 8 for x86_64
Severity:
Moderate
Description:
以下項目について対処しました。
[Security Fix]
- Python の e-mail モジュールには、特殊文字が含まれる
電子メールアドレスを誤って解析してしまう問題がある
ため、リモートの攻撃者により、通常送信が拒否される
電子メールアドレスからのメッセージの送信を可能と
する脆弱性が存在します。(CVE-2023-27043)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2023-27043
The email module of Python through 3.11.3 incorrectly parses e-mail addresses that contain a special character. The wrong portion of an RFC2822 header is identified as the value of the addr-spec. In some applications, an attacker can bypass a protection mechanism in which application access is granted only after verifying receipt of e-mail to a specific domain (e.g., only @company.example.com addresses may be used for signup). This occurs in email/_parseaddr.py in recent versions of Python.
The email module of Python through 3.11.3 incorrectly parses e-mail addresses that contain a special character. The wrong portion of an RFC2822 header is identified as the value of the addr-spec. In some applications, an attacker can bypass a protection mechanism in which application access is granted only after verifying receipt of e-mail to a specific domain (e.g., only @company.example.com addresses may be used for signup). This occurs in email/_parseaddr.py in recent versions of Python.
追加情報:
N/A
ダウンロード:
SRPMS
- python3.11-3.11.7-1.el8.ML.1.src.rpm
MD5: 56170d743057bae9eca775b6033ce92d
SHA-256: 1ea3606f4ee98adb9402e4c8893f02f921ce05eb7c71316f1630fe9066c6cbf1
Size: 19.22 MB
Asianux Server 8 for x86_64
- python3.11-3.11.7-1.el8.ML.1.i686.rpm
MD5: 48efc51f1216e64ecbff89991f59c468
SHA-256: ba43a5d8d8bf6af7ee68060bbf1a7d23dcfcfdf78bcdc2d9504d16e3add865c4
Size: 29.48 kB - python3.11-3.11.7-1.el8.ML.1.x86_64.rpm
MD5: ed73c716ad3d65f26f59e30eec119593
SHA-256: e5302607a248b74b69a3ad5bef6ef6398d0d688b5d9e1ac177d4c37a2af9d5a3
Size: 29.39 kB - python3.11-debug-3.11.7-1.el8.ML.1.i686.rpm
MD5: 80ea7f95ef13ee3f1ca0c97a2b6ca3bb
SHA-256: c2800a0fd72b48533dd4ba556a7ca11f77238a4e593343bd6427cca5a0b0fa43
Size: 3.19 MB - python3.11-debug-3.11.7-1.el8.ML.1.x86_64.rpm
MD5: 689752747ddf0c217ede4c3ae2923706
SHA-256: 800732383442b974845abd5adb85c6795b71a40c48787c436e7d83c9bb907558
Size: 3.33 MB - python3.11-devel-3.11.7-1.el8.ML.1.i686.rpm
MD5: 33e367f5830f79d43d0effbca2e0c137
SHA-256: 0386c73f91da930406291d63d2ae41f5bf34b012c625c903f01afc70d9f928e3
Size: 247.05 kB - python3.11-devel-3.11.7-1.el8.ML.1.x86_64.rpm
MD5: 94c9f6f6b5138a172b204fc6a46db394
SHA-256: f950e57dd2ccf25d8af7bfcd1ff9665cad427092128088c87534af9281c92a6e
Size: 247.01 kB - python3.11-idle-3.11.7-1.el8.ML.1.i686.rpm
MD5: 6d3c545dd5e22e992a2e26e4f470616a
SHA-256: bd19819f210399aed882103e7a39c40621e1352c732a68a70569cd0a433ba697
Size: 1.32 MB - python3.11-idle-3.11.7-1.el8.ML.1.x86_64.rpm
MD5: efbf46c16b9ab4082e7fad02215e9286
SHA-256: 2568eb28598aaf368a0a1c3f2325ce4b2b0daefe3f1b5cfd4ad10a9c6c918a4c
Size: 1.32 MB - python3.11-libs-3.11.7-1.el8.ML.1.i686.rpm
MD5: 0c94454573a21e83d2527256d74211eb
SHA-256: 8720ce56aee69fcc71db4368ed8b158071df81587b60809e72594b157ce08e51
Size: 10.47 MB - python3.11-libs-3.11.7-1.el8.ML.1.x86_64.rpm
MD5: f48cfe1278b1c66c35d0c179e3e8e308
SHA-256: c73d7aa4921c5931561f5a092bf69c0a0508034142db82d128c112a81f49081f
Size: 10.37 MB - python3.11-rpm-macros-3.11.7-1.el8.ML.1.noarch.rpm
MD5: 37db7dcf29ac39a95578d0260e518495
SHA-256: e4fd588f2792b7e69cad2e0daa746ff1b972c0733bd9fbe40e57562f82761dc8
Size: 13.71 kB - python3.11-test-3.11.7-1.el8.ML.1.i686.rpm
MD5: 963fee6a24189c224406b9afdd264a1c
SHA-256: 7c3dee9cfe3907fdd21ac985d1cbc4aca6aa1695cd835b2a0a6c60f7b7771249
Size: 15.47 MB - python3.11-test-3.11.7-1.el8.ML.1.x86_64.rpm
MD5: 663a9d11526a1c18e8c1c5f66fc70f9b
SHA-256: f851a680c91ba5d61e17a694e925668c2285f31db4bacf25b60e5b2440c4689f
Size: 15.46 MB - python3.11-tkinter-3.11.7-1.el8.ML.1.i686.rpm
MD5: 0e4fae124776d45c07725ed2601c1336
SHA-256: d55eb13f1594041d37b61fde78db21ea50823ef7f1190c531ef25717a4eaf8e4
Size: 408.48 kB - python3.11-tkinter-3.11.7-1.el8.ML.1.x86_64.rpm
MD5: 1cd3bbd9378bdc5a5bf72fb76f92b501
SHA-256: ab6c1a9003cebfa9afa8d51db0f665f9dbcbbbf038e58246271ac07b17fb4893
Size: 407.14 kB