python3.11-3.11.9-7.el9_5.3
エラータID: AXSA:2025-9841:01
リリース日:
2025/04/09 Wednesday - 19:03
題名:
python3.11-3.11.9-7.el9_5.3
影響のあるチャネル:
MIRACLE LINUX 9 for x86_64
Severity:
Low
Description:
以下項目について対処しました。
[Security Fix]
- CPython の http.cookies 標準ライブラリの Cookie データのパーサー
には、二次関数の計算量を持つアルゴリズムが使用されていることに
起因して意図しない CPU リソースが消費されてしまう問題があるため、
リモートの攻撃者により、引用符で囲まれ、かつバックスラッシュを
含むように細工された Cookie 値の解析を介して、サービス拒否攻撃
(CPU リソースの枯渇) を可能とする脆弱性が存在します。
(CVE-2024-7592)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2024-7592
There is a LOW severity vulnerability affecting CPython, specifically the 'http.cookies' standard library module. When parsing cookies that contained backslashes for quoted characters in the cookie value, the parser would use an algorithm with quadratic complexity, resulting in excess CPU resources being used while parsing the value.
There is a LOW severity vulnerability affecting CPython, specifically the 'http.cookies' standard library module. When parsing cookies that contained backslashes for quoted characters in the cookie value, the parser would use an algorithm with quadratic complexity, resulting in excess CPU resources being used while parsing the value.
追加情報:
N/A
ダウンロード:
SRPMS
- python3.11-3.11.9-7.el9_5.3.src.rpm
MD5: 1569d8bbca081660bf11f67b68dae271
SHA-256: 673235e19bdcc4e81e10c64c8946d33d3ed4b441a09a62d2d9194dcd89a35be5
Size: 19.33 MB
Asianux Server 9 for x86_64
- python3.11-3.11.9-7.el9_5.3.i686.rpm
MD5: 26bc0f527aeaf68a4cd120fee31df0cb
SHA-256: e4cd0758f51e42abb99b10807cc4641511f5654823194451bb01ccb7103a4929
Size: 24.88 kB - python3.11-3.11.9-7.el9_5.3.x86_64.rpm
MD5: 8e27f7bb3179895f261625d8ff84ad6a
SHA-256: e4ad8a52662cf93eaac0259471adb3228ab2902abf3a1b33e201ac7078b5dbc4
Size: 24.81 kB - python3.11-debug-3.11.9-7.el9_5.3.i686.rpm
MD5: c02b969839aaf6b5bff8d7f282b63548
SHA-256: 4826f977b1a3f79e106cdba93bfdfbba9ba253f5c138c4df39844fa52df5add6
Size: 3.25 MB - python3.11-debug-3.11.9-7.el9_5.3.x86_64.rpm
MD5: 68ac58fbd9db978d43b1106db11bdf00
SHA-256: ddea4f0f5a40cdf2547db82d7186d880911e66947f11484f698d310affcbb706
Size: 3.40 MB - python3.11-devel-3.11.9-7.el9_5.3.i686.rpm
MD5: dfecbb6c39f21c0cb8be4f1e9d521b97
SHA-256: 7b2f83252d9ca8f84c708b18cbf11a922a13ab0b7887cc613498d356ca28ef97
Size: 279.57 kB - python3.11-devel-3.11.9-7.el9_5.3.x86_64.rpm
MD5: ab6577b8316ac935e6a7d9decc6c3782
SHA-256: cf871793c4405a7a41af201340a84f8feb8356ea0cfff7181a9aa9a15a6200d2
Size: 279.61 kB - python3.11-idle-3.11.9-7.el9_5.3.i686.rpm
MD5: 9919f6e7afc497ba957993321fb98eaf
SHA-256: 9fe4df8646c7fc451b95e76d827dfd90fe233de1650ea555a0316e1918009e9e
Size: 1.09 MB - python3.11-idle-3.11.9-7.el9_5.3.x86_64.rpm
MD5: d3b6eaecdd8251dad7c7bc57fd98987b
SHA-256: 109a59b71e39c6a34bc92d98a59dd5a63821d6ffd62be8c74664de98caccf1ca
Size: 1.09 MB - python3.11-libs-3.11.9-7.el9_5.3.i686.rpm
MD5: 2bef208635af91fb2dbc14fdc1e9119c
SHA-256: be96a3fbc76572c65449e538abad0161563506b8a3eedaf1538e4868543bd7ce
Size: 10.22 MB - python3.11-libs-3.11.9-7.el9_5.3.x86_64.rpm
MD5: b81b0edc91873275965c4040741f4c41
SHA-256: 7133a864373d5ecd684cc6deec79cf36047bdb7f25f286796f79d98da857de12
Size: 10.17 MB - python3.11-test-3.11.9-7.el9_5.3.i686.rpm
MD5: c355403c07dcad7341fd564e7953294f
SHA-256: 6d04a6b332887e8422f92d2bef4c8fd41a32ae9dcaa778e419b569c4ea3e2ca8
Size: 15.31 MB - python3.11-test-3.11.9-7.el9_5.3.x86_64.rpm
MD5: 2a0a75f02795d9a8b5ee90f18fc45323
SHA-256: 778d72fdf8e6f87e9996d946e1e36486a251ae87562168974904176d1da0bf13
Size: 15.30 MB - python3.11-tkinter-3.11.9-7.el9_5.3.i686.rpm
MD5: 500e49761512142415f38e89f0880379
SHA-256: 4f0670f747ef80c439404e41d583aeee9b8326d0b730d702b34732cab5ec42e7
Size: 427.59 kB - python3.11-tkinter-3.11.9-7.el9_5.3.x86_64.rpm
MD5: ebec18479a379ba1cbac7bb0e348f467
SHA-256: 6c2d513c56403b6d4c567b53f8a8c6ddfae87003ed8f6acf3c06fa8e0fef2266
Size: 426.02 kB