From a0793139ed2a092ad6d7d20c7c47d40292f8df15 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Adrian=20Schr=C3=B6ter?= Date: Mon, 11 Nov 2024 14:50:22 +0100 Subject: [PATCH] Adding patchinfo patchinfo.20240927074108533490.269002615871826 --- iperf | 2 +- .../_patchinfo | 23 +++++++++++++++++++ 2 files changed, 24 insertions(+), 1 deletion(-) create mode 100644 patchinfo.20240927074108533490.269002615871826/_patchinfo diff --git a/iperf b/iperf index 8b40a08..0b3614e 160000 --- a/iperf +++ b/iperf @@ -1 +1 @@ -Subproject commit 8b40a08f485cda6f96051841bcc3f67cec9cdbfc +Subproject commit 0b3614eddc84201fb2669abd3a4981d6451689a1 diff --git a/patchinfo.20240927074108533490.269002615871826/_patchinfo b/patchinfo.20240927074108533490.269002615871826/_patchinfo new file mode 100644 index 0000000..5b7c46e --- /dev/null +++ b/patchinfo.20240927074108533490.269002615871826/_patchinfo @@ -0,0 +1,23 @@ + + + VUL-0: CVE-2024-7592: python, cpython: Uncontrolled CPU resource consumption when in http.cookies module + VUL-0: CVE-2024-8088: python310,python311,python312,python39: denial of service in zipfile + VUL-0: CVE-2024-6232: python,python-base,python3,python3-base,python310,python311,python312,python36,python39: python: cpython: tarfile: ReDos via excessive backtracking while parsing header values + + + + mcepl + important + security + Security update for python311 + This update for python311 fixes the following issues: + +- CVE-2024-8088: Fixed a denial of service in zipfile (bsc#1229704) +- CVE-2024-6232: Fixed a ReDos via excessive backtracking while parsing header values (bsc#1230227) +- CVE-2024-7592: Fixed a denial of service in the http.cookies module (bsc#1229596) + + python311 + python311:base + python311:doc + +