Release Info

Advisory: CLSA-2022:1658347450

OS: CentOS 8.4 ELS

Public date: 2022-07-20 00:00:00

Project: python2

Version: 2.7.18-4.module_el8.4.0+2071+0b56c8de.tuxcare.els3

Errata link: https://errata.cloudlinux.com/centos8.4-els/CLSA-2022-1658347450.html

Changelog

- CVE-2015-20170: mailcap: findmatch() function does not sanitise the second argument allowing to inject shell commands

Update

Update command: dnf update python2*

Packages list

python2-tkinter-2.7.18-4.module_el8.4.0+2071+0b56c8de.tuxcare.els3.x86_64.rpm python2-tools-2.7.18-4.module_el8.4.0+2071+0b56c8de.tuxcare.els3.x86_64.rpm python2-test-2.7.18-4.module_el8.4.0+2071+0b56c8de.tuxcare.els3.x86_64.rpm python2-debug-2.7.18-4.module_el8.4.0+2071+0b56c8de.tuxcare.els3.x86_64.rpm python2-2.7.18-4.module_el8.4.0+2071+0b56c8de.tuxcare.els3.x86_64.rpm python2-devel-2.7.18-4.module_el8.4.0+2071+0b56c8de.tuxcare.els3.x86_64.rpm python2-libs-2.7.18-4.module_el8.4.0+2071+0b56c8de.tuxcare.els3.x86_64.rpm

CVEs

CVE-2015-20107