VUL-0: CVE-2024-7592: python, cpython: Uncontrolled CPU resource consumption when in http.cookies module
VUL-0: CVE-2024-8088: python310,python311,python312,python39: denial of service in zipfile
VUL-0: CVE-2024-6232: python,python-base,python3,python3-base,python310,python311,python312,python36,python39: python: cpython: tarfile: ReDos via excessive backtracking while parsing header values
mcepl
important
security
Security update for python311
This update for python311 fixes the following issues:
- CVE-2024-8088: Fixed a denial of service in zipfile (bsc#1229704)
- CVE-2024-6232: Fixed a ReDos via excessive backtracking while parsing header values (bsc#1230227)
- CVE-2024-7592: Fixed a denial of service in the http.cookies module (bsc#1229596)
python311
python311:base
python311:doc