Release Info

Advisory: CLSA-2024:1720178375

OS: CentOS 8.4 ELS

Public date: 2024-07-05 07:19:37

Project: python2

Version: 2.7.18-4.module_el8.4.0+2187+b1352f4a.tuxcare.els12

Errata link: https://errata.tuxcare.com/els_os/centos8.4els/CLSA-2024-1720178375.html

Changelog

- CVE-2024-0450: Make zipfile module reject zip archives which overlap entries in the archive. Prevent “quoted-overlap” zip-bombs exploit.

Update

Update command: dnf update python2*

Packages list

python2-2.7.18-4.module_el8.4.0+2187+b1352f4a.tuxcare.els12.x86_64.rpm python2-debug-2.7.18-4.module_el8.4.0+2187+b1352f4a.tuxcare.els12.x86_64.rpm python2-devel-2.7.18-4.module_el8.4.0+2187+b1352f4a.tuxcare.els12.x86_64.rpm python2-libs-2.7.18-4.module_el8.4.0+2187+b1352f4a.tuxcare.els12.x86_64.rpm python2-test-2.7.18-4.module_el8.4.0+2187+b1352f4a.tuxcare.els12.x86_64.rpm python2-tkinter-2.7.18-4.module_el8.4.0+2187+b1352f4a.tuxcare.els12.x86_64.rpm python2-tools-2.7.18-4.module_el8.4.0+2187+b1352f4a.tuxcare.els12.x86_64.rpm

CVEs

CVE-2024-0450