[CLSA-2024:1730226421] python2: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2024-10-29 18:27:05 UTC
Description:
- CVE-2024-6232: remove backtracking when parsing tarfile headers - CVE-2024-7592: fix quadratic complexity in parsing "-quoted cookie values with backslashes
Updated packages:
  • python2-2.7.18-10.el9.tuxcare.els9.x86_64.rpm
    sha:9a1891dbdfb68c5411b03efa90225bdf805257d772c08d89f82a77c773eda29a
  • python2-debug-2.7.18-10.el9.tuxcare.els9.x86_64.rpm
    sha:d94a379ce1c8ef834c05d9a38acf053e48fe899372d4af7e96b4eb5dcea29249
  • python2-devel-2.7.18-10.el9.tuxcare.els9.x86_64.rpm
    sha:b30540ae07cb5827d904cdd59a7850dbab0a528a72cb690be94bc87692184807
  • python2-libs-2.7.18-10.el9.tuxcare.els9.x86_64.rpm
    sha:a4a91c1e7053839e37b247c09800b4ee327640b97e14ed893defbf68edda46c0
  • python2-test-2.7.18-10.el9.tuxcare.els9.x86_64.rpm
    sha:10ea267f4cbe33b1c92020c54d36855ab0d714233882c4de8288ba455b2c2111
  • python2-tkinter-2.7.18-10.el9.tuxcare.els9.x86_64.rpm
    sha:226b04c7086010c390fd72d5a811faf4d3a7b03a5e5ee82ee4d6e763a986f398
  • python2-tools-2.7.18-10.el9.tuxcare.els9.x86_64.rpm
    sha:4f5cb8376c7ccc619e46100e89a75ab14f30b6327a16d5f2d334a7da0a537562
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.