[CLSA-2023:1680206118] python2: Fix of CVE-2023-24329
Type:
security
Severity:
Important
Release date:
2023-03-30
Description:
- CVE-2023-24329: Prevent urllib.parse.urlparse from accepting schemes that don't begin with an alphabetical ASCII character - Exclude unstable 'test_smtplib' from testing on aarch64
Updated packages:
  • python2-2.7.18-10.el9.tuxcare.els3.x86_64.rpm
    sha:5836ee73bf5f7013fad6e092028a95c0e27ab1bc
  • python2-debug-2.7.18-10.el9.tuxcare.els3.x86_64.rpm
    sha:5040e3c34d687261ec06803e2637e1e4fb8fa7aa
  • python2-devel-2.7.18-10.el9.tuxcare.els3.x86_64.rpm
    sha:3d054664a90316bcaa098c33839c8b1ada03aa25
  • python2-libs-2.7.18-10.el9.tuxcare.els3.x86_64.rpm
    sha:159e70fc254ecaea811529e72d79657e1da00de8
  • python2-test-2.7.18-10.el9.tuxcare.els3.x86_64.rpm
    sha:764c789754fb17d4dbc3d7a95face8315b04497a
  • python2-tkinter-2.7.18-10.el9.tuxcare.els3.x86_64.rpm
    sha:d178414b7361a9b0e91702267884bdbb9dbb76d8
  • python2-tools-2.7.18-10.el9.tuxcare.els3.x86_64.rpm
    sha:f0e75605f1ab55ad032ed898de88dbc5e2395e37
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.