Release Info

Advisory: CLSA-2025:1749037555

OS: EL 8

Public date: 2025-06-04 11:45:57

Project: python

Version: 3.6.15-7.el8

Errata link: https://errata.tuxcare.com/els_alt_python/el8/CLSA-2025-1749037555.html

Changelog

- CVE-2007-4559: implement PEP 706 - a filter in the tarfile module to prevent directory traversal vulnerability - CVE-2023-6597: prevent tempfile.TemporaryDirectory class dereference symlinks

Update

Update command: yum update alt-python*

Packages list

alt-python36-3.6.15-7.el8.x86_64.rpm alt-python36-debug-3.6.15-7.el8.x86_64.rpm alt-python36-devel-3.6.15-7.el8.x86_64.rpm alt-python36-libs-3.6.15-7.el8.x86_64.rpm alt-python36-test-3.6.15-7.el8.x86_64.rpm alt-python36-tkinter-3.6.15-7.el8.x86_64.rpm alt-python36-tools-3.6.15-7.el8.x86_64.rpm

CVEs

CVE-2023-6597
CVE-2007-4559