Release Info

Advisory: CLSA-2025:1749037497

OS: EL 7

Public date: 2025-06-04 11:44:59

Project: python

Version: 3.6.15-7.el7

Errata link: https://errata.tuxcare.com/els_alt_python/el7/CLSA-2025-1749037497.html

Changelog

- CVE-2007-4559: implement PEP 706 - a filter in the tarfile module to prevent directory traversal vulnerability - CVE-2023-6597: prevent tempfile.TemporaryDirectory class dereference symlinks

Update

Update command: yum update alt-python*

Packages list

alt-python36-3.6.15-7.el7.x86_64.rpm alt-python36-debug-3.6.15-7.el7.x86_64.rpm alt-python36-devel-3.6.15-7.el7.x86_64.rpm alt-python36-libs-3.6.15-7.el7.x86_64.rpm alt-python36-test-3.6.15-7.el7.x86_64.rpm alt-python36-tkinter-3.6.15-7.el7.x86_64.rpm alt-python36-tools-3.6.15-7.el7.x86_64.rpm

CVEs

CVE-2007-4559
CVE-2023-6597