Release Info

Advisory: CLSA-2025:1740477793

OS: AlmaLinux 9.2 ESU

Public date: 2025-02-25 05:03:15

Project: python3.11

Version: 3.11.2-2.el9_2.2.tuxcare.els5

Errata link: https://errata.tuxcare.com/els_os/almalinux9.2esu/CLSA-2025-1740477793.html

Changelog

- CVE-2024-6232: fix excessive backtracking in tarfile.TarFile header parsing to address ReDoS vulnerability.

Update

Update command: dnf update python3.11*

Packages list

python3.11-3.11.2-2.el9_2.2.tuxcare.els5.i686.rpm python3.11-3.11.2-2.el9_2.2.tuxcare.els5.x86_64.rpm python3.11-debug-3.11.2-2.el9_2.2.tuxcare.els5.i686.rpm python3.11-debug-3.11.2-2.el9_2.2.tuxcare.els5.x86_64.rpm python3.11-devel-3.11.2-2.el9_2.2.tuxcare.els5.i686.rpm python3.11-devel-3.11.2-2.el9_2.2.tuxcare.els5.x86_64.rpm python3.11-idle-3.11.2-2.el9_2.2.tuxcare.els5.i686.rpm python3.11-idle-3.11.2-2.el9_2.2.tuxcare.els5.x86_64.rpm python3.11-libs-3.11.2-2.el9_2.2.tuxcare.els5.i686.rpm python3.11-libs-3.11.2-2.el9_2.2.tuxcare.els5.x86_64.rpm python3.11-test-3.11.2-2.el9_2.2.tuxcare.els5.i686.rpm python3.11-test-3.11.2-2.el9_2.2.tuxcare.els5.x86_64.rpm python3.11-tkinter-3.11.2-2.el9_2.2.tuxcare.els5.i686.rpm python3.11-tkinter-3.11.2-2.el9_2.2.tuxcare.els5.x86_64.rpm

CVEs

CVE-2024-6232