Release Info

Advisory: CLSA-2023:1703611827

OS: Ubuntu 16.04 ELS

Public date: 2023-12-26 12:30:29

Project: python3.5

Version: 1:3.5.2-2ubuntu0~16.04.13+tuxcare.els13

Errata link: https://errata.tuxcare.com/els_os/ubuntu16.04els/CLSA-2023-1703611827.html

Changelog

* SECURITY UPDATE: potential DoS attack via CPU and RAM exhaustion - debian/patches/CVE-2022-48564.patch: Improve validation of Plist files that prevent DoS when processing malformed Apple Property List files in binary format - CVE-2022-48564 * SECURITY UPDATE: TLS handshake bypass - debian/patches/CVE-2023-40217.patch: Check for & avoid the ssl pre-close flaw. Update SSL tests - CVE-2023-40217

Update

Update command: apt-get update apt-get --only-upgrade install python3.5*

Packages list

idle-python3.5_3.5.2-2ubuntu0~16.04.13+tuxcare.els13_all.deb libpython3.5_3.5.2-2ubuntu0~16.04.13+tuxcare.els13_amd64.deb libpython3.5-dev_3.5.2-2ubuntu0~16.04.13+tuxcare.els13_amd64.deb libpython3.5-minimal_3.5.2-2ubuntu0~16.04.13+tuxcare.els13_amd64.deb libpython3.5-stdlib_3.5.2-2ubuntu0~16.04.13+tuxcare.els13_amd64.deb libpython3.5-testsuite_3.5.2-2ubuntu0~16.04.13+tuxcare.els13_all.deb python3.5_3.5.2-2ubuntu0~16.04.13+tuxcare.els13_amd64.deb python3.5-dev_3.5.2-2ubuntu0~16.04.13+tuxcare.els13_amd64.deb python3.5-doc_3.5.2-2ubuntu0~16.04.13+tuxcare.els13_all.deb python3.5-examples_3.5.2-2ubuntu0~16.04.13+tuxcare.els13_all.deb python3.5-minimal_3.5.2-2ubuntu0~16.04.13+tuxcare.els13_amd64.deb python3.5-venv_3.5.2-2ubuntu0~16.04.13+tuxcare.els13_amd64.deb

CVEs

CVE-2023-40217
CVE-2022-48564