Release Info

Advisory: CLSA-2024:1717692229

OS: CentOS 8.5 ELS

Public date: 2024-06-06 12:43:51

Project: python3

Version: 3.6.8-42.el8.tuxcare.els5

Errata link: https://errata.tuxcare.com/els_os/centos8.5els/CLSA-2024-1717692229.html

Changelog

- Remove -b option, use original maintainer approach - Fix expat regression tests for xml_etree - CVE-2022-48564: Improve validation of Plist files that prevent DoS - CVE-2023-40217: Fix TLS handshake bypass - CVE-2023-27043: reject malformed addresses in email.parseaddr()

Update

Update command: dnf update python3*

Packages list

platform-python-3.6.8-42.el8.tuxcare.els5.i686.rpm platform-python-3.6.8-42.el8.tuxcare.els5.x86_64.rpm platform-python-debug-3.6.8-42.el8.tuxcare.els5.i686.rpm platform-python-debug-3.6.8-42.el8.tuxcare.els5.x86_64.rpm platform-python-devel-3.6.8-42.el8.tuxcare.els5.i686.rpm platform-python-devel-3.6.8-42.el8.tuxcare.els5.x86_64.rpm python3-devel-3.6.8-42.el8.tuxcare.els5.x86_64.rpm python3-idle-3.6.8-42.el8.tuxcare.els5.i686.rpm python3-idle-3.6.8-42.el8.tuxcare.els5.x86_64.rpm python3-libs-3.6.8-42.el8.tuxcare.els5.i686.rpm python3-libs-3.6.8-42.el8.tuxcare.els5.x86_64.rpm python3-test-3.6.8-42.el8.tuxcare.els5.i686.rpm python3-test-3.6.8-42.el8.tuxcare.els5.x86_64.rpm python3-tkinter-3.6.8-42.el8.tuxcare.els5.i686.rpm python3-tkinter-3.6.8-42.el8.tuxcare.els5.x86_64.rpm

CVEs

CVE-2022-48564
CVE-2023-40217
CVE-2023-27043