[CLSA-2025:1740132042] python3: Fix of CVE-2024-9287
Type:
security
Severity:
Important
Release date:
2025-02-21 10:00:47 UTC
Description:
- CVE-2024-9287: fix path names quoting to prevent command injection in virtual environment activation scripts
Updated packages:
  • python3-3.6.8-21.0.1.el7_9.tuxcare.els2.i686.rpm
    sha:bc275a3903735e28b3dae27c844b6b71a1d03eb3fbd34fe407274077a08a5836
  • python3-3.6.8-21.0.1.el7_9.tuxcare.els2.x86_64.rpm
    sha:d072162937a23eec94f57f2cad1dbdbbb479c5b1bff9fe3d641f5400a37e197f
  • python3-debug-3.6.8-21.0.1.el7_9.tuxcare.els2.i686.rpm
    sha:c1f58205e03a57cecb82a5ced4733b36feba33264c0779892fbe48cd6d5bda57
  • python3-debug-3.6.8-21.0.1.el7_9.tuxcare.els2.x86_64.rpm
    sha:e106101221746d4ecfb422628992391f2ed98447c91058fbd0a1ddc07b16cc2a
  • python3-devel-3.6.8-21.0.1.el7_9.tuxcare.els2.i686.rpm
    sha:68899f6accccc5fcd3174317656b67a68eed9170a9e987b116d1d006adaef82f
  • python3-devel-3.6.8-21.0.1.el7_9.tuxcare.els2.x86_64.rpm
    sha:9bbb711f25a840512995c05c19f4dbf2333434522f4deba8849e43878256120c
  • python3-idle-3.6.8-21.0.1.el7_9.tuxcare.els2.i686.rpm
    sha:ddcd62754d09949b1c1c1aef4aaf10a6206e5c74ecb2cc814a9c811813982448
  • python3-idle-3.6.8-21.0.1.el7_9.tuxcare.els2.x86_64.rpm
    sha:b753d14ff626f397565b50b9e6dd8f7883753f9baee74cb5e0b12e220f8ad6f5
  • python3-libs-3.6.8-21.0.1.el7_9.tuxcare.els2.i686.rpm
    sha:6b2bacbd8c47dd6cc248efc666ef3913d8c14cad3c2fdf3aa4c3e29cf489c561
  • python3-libs-3.6.8-21.0.1.el7_9.tuxcare.els2.x86_64.rpm
    sha:34a562f614963355e066e63f06fd11ec74b477f636764439b3ae3ec94c663373
  • python3-test-3.6.8-21.0.1.el7_9.tuxcare.els2.i686.rpm
    sha:d0369a9e080f091d3f4e276a62d410fa54095f2eb154bd5917ffc1513745a1e8
  • python3-test-3.6.8-21.0.1.el7_9.tuxcare.els2.x86_64.rpm
    sha:360fa414f4cd761db261ccc87806f58897c79ab6b51dccf0676cd831981fa99b
  • python3-tkinter-3.6.8-21.0.1.el7_9.tuxcare.els2.i686.rpm
    sha:222abe37e81da6c3889ed4ee871d5dbd7f91f5f01f656ff6d09bfa3a5316cf15
  • python3-tkinter-3.6.8-21.0.1.el7_9.tuxcare.els2.x86_64.rpm
    sha:d956da44943a867d226d5c7319ed3e8a551d1faa615d15b37ef1004038b4b646
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.