Release Info

Advisory: CLSA-2023:1689885838

OS: Ubuntu 16.04 ELS

Public date: 2023-07-20 16:44:01

Project: python2.7

Version: 2.7.12-1ubuntu0~16.04.18+tuxcare.els7

Errata link: https://errata.cloudlinux.com/ubuntu16-els/CLSA-2023-1689885838.html

Changelog

* SECURITY UPDATE: urllib.parse space handling CVE-2023-24329 appears unfixed - debian/patches/CVE-2023-24329-2-v2.7.patch: Start stripping C0 control and space chars in `urlsplit` - debian/patches/CVE-2023-24329-v2.7.patch: Fix test_attributes_bad_scheme to check for non-ascii symbol as first character of url - CVE-2023-24329

Update

Update command: apt-get update apt-get --only-upgrade install python2.7*

Packages list

idle-python2.7_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_all.deb libpython2.7_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb libpython2.7-dev_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb libpython2.7-minimal_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb libpython2.7-stdlib_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb libpython2.7-testsuite_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_all.deb python2.7_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb python2.7-dev_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb python2.7-doc_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_all.deb python2.7-examples_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_all.deb python2.7-minimal_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb

CVEs

CVE-2023-24329