Release Info

Advisory: CLSA-2025:1761056282

OS: CentOS 7 ELS

Public date: 2025-10-21 14:18:04.106246

Project: python3-setuptools

Version: 39.2.0-10.0.5.el7.tuxcare.els1

Errata link: https://errata.tuxcare.com/els_os/centos7els/CLSA-2025-1761056282.html

Changelog

- CVE-2022-40897: fix Regular Expression Denial of Service (ReDoS) in package_index.py - CVE-2024-6345: fix remote code execution in package_index module

Update

Update command: yum update python3-setuptools*

Packages list

python3-setuptools-39.2.0-10.0.5.el7.tuxcare.els1.noarch.rpm

CVEs

CVE-2024-6345
CVE-2022-40897