Release Info

Advisory: CLSA-2023:1701971140

OS: Ubuntu 18.04 ELS

Public date: 2023-12-07 12:45:42

Project: python3.6

Version: 3.6.9-1~18.04ubuntu1.12+tuxcare.els6

Errata link: https://errata.tuxcare.com/els_os/ubuntu18.04els/CLSA-2023-1701971140.html

Changelog

* SECURITY UPDATE: potential DoS attack via CPU and RAM exhaustion - debian/patches/CVE-2022-48564.patch: Improve validation of Plist files that prevent DoS when processing malformed Apple Property List files in binary format - CVE-2022-48564 * SECURITY UPDATE: TLS handshake bypass - debian/patches/CVE-2023-40217.patch: Check for & avoid the ssl pre-close flaw. Update SSL tests - CVE-2023-40217

Update

Update command: apt-get update apt-get --only-upgrade install python3.6*

Packages list

idle-python3.6_3.6.9-1~18.04ubuntu1.12+tuxcare.els6_all.deb libpython3.6_3.6.9-1~18.04ubuntu1.12+tuxcare.els6_amd64.deb libpython3.6-dev_3.6.9-1~18.04ubuntu1.12+tuxcare.els6_amd64.deb libpython3.6-minimal_3.6.9-1~18.04ubuntu1.12+tuxcare.els6_amd64.deb libpython3.6-stdlib_3.6.9-1~18.04ubuntu1.12+tuxcare.els6_amd64.deb libpython3.6-testsuite_3.6.9-1~18.04ubuntu1.12+tuxcare.els6_all.deb python3.6_3.6.9-1~18.04ubuntu1.12+tuxcare.els6_amd64.deb python3.6-dev_3.6.9-1~18.04ubuntu1.12+tuxcare.els6_amd64.deb python3.6-doc_3.6.9-1~18.04ubuntu1.12+tuxcare.els6_all.deb python3.6-examples_3.6.9-1~18.04ubuntu1.12+tuxcare.els6_all.deb python3.6-minimal_3.6.9-1~18.04ubuntu1.12+tuxcare.els6_amd64.deb python3.6-venv_3.6.9-1~18.04ubuntu1.12+tuxcare.els6_amd64.deb

CVEs

CVE-2022-48564
CVE-2023-40217