23 lines
1.3 KiB
Plaintext
23 lines
1.3 KiB
Plaintext
<patchinfo incident="87">
|
|
<!-- generated from request(s) 345595 -->
|
|
<issue tracker="bnc" id="1229596">VUL-0: CVE-2024-7592: python, cpython: Uncontrolled CPU resource consumption when in http.cookies module</issue>
|
|
<issue tracker="bnc" id="1229704">VUL-0: CVE-2024-8088: python310,python311,python312,python39: denial of service in zipfile</issue>
|
|
<issue tracker="bnc" id="1230227">VUL-0: CVE-2024-6232: python,python-base,python3,python3-base,python310,python311,python312,python36,python39: python: cpython: tarfile: ReDos via excessive backtracking while parsing header values</issue>
|
|
<issue tracker="cve" id="2024-6232"/>
|
|
<issue tracker="cve" id="2024-7592"/>
|
|
<issue tracker="cve" id="2024-8088"/>
|
|
<packager>mcepl</packager>
|
|
<rating>important</rating>
|
|
<category>security</category>
|
|
<summary>Security update for python311</summary>
|
|
<description>This update for python311 fixes the following issues:
|
|
|
|
- CVE-2024-8088: Fixed a denial of service in zipfile (bsc#1229704)
|
|
- CVE-2024-6232: Fixed a ReDos via excessive backtracking while parsing header values (bsc#1230227)
|
|
- CVE-2024-7592: Fixed a denial of service in the http.cookies module (bsc#1229596)
|
|
</description>
|
|
<package>python311</package>
|
|
<package>python311:base</package>
|
|
<package>python311:doc</package>
|
|
<seperate_build_arch/>
|
|
</patchinfo> |