[CLSA-2023:1678396353] Fix CVE(s): CVE-2023-24329
Type:
security
Severity:
Important
Release date:
2023-03-09 21:12:33 UTC
Description:
* SECURITY UPDATE: urllib.parse.urlparse does not enforce that a scheme must begin with an ASCII-character - debian/patches/CVE-2023-24329.patch: Prevent urllib.parse.urlparse from accepting schemes that don't begin with an alphabetical ASCII character - CVE-2023-24329
Updated packages:
  • idle-python3.5_3.5.2-2ubuntu0~16.04.13+tuxcare.els8_all.deb
    sha:fb60d1ecc76b50e9a4dffbad5d100ff4108e81d1
  • libpython3.5_3.5.2-2ubuntu0~16.04.13+tuxcare.els8_amd64.deb
    sha:b502b007eeac74757a54ad30d1ff6599ca678274
  • libpython3.5-dev_3.5.2-2ubuntu0~16.04.13+tuxcare.els8_amd64.deb
    sha:63158ef86026de228be41c094177404fe2f1a023
  • libpython3.5-minimal_3.5.2-2ubuntu0~16.04.13+tuxcare.els8_amd64.deb
    sha:2f5c9f55d951433b21813940dd5582568cc3cfd7
  • libpython3.5-stdlib_3.5.2-2ubuntu0~16.04.13+tuxcare.els8_amd64.deb
    sha:364c9c0a2d0ed552bc9726940b424c6d020fdd5b
  • libpython3.5-testsuite_3.5.2-2ubuntu0~16.04.13+tuxcare.els8_all.deb
    sha:76c3341b668f387c6fcf18015d33b30e2af3cdad
  • python3.5_3.5.2-2ubuntu0~16.04.13+tuxcare.els8_amd64.deb
    sha:11003c23d7056d74b49f34720717711e3d7d2a69
  • python3.5-dev_3.5.2-2ubuntu0~16.04.13+tuxcare.els8_amd64.deb
    sha:d5f494816b271cdeb57d2f21b068ba6d49973676
  • python3.5-doc_3.5.2-2ubuntu0~16.04.13+tuxcare.els8_all.deb
    sha:7b7f55932306a0d643cb15a37e84bd6968fec9d9
  • python3.5-examples_3.5.2-2ubuntu0~16.04.13+tuxcare.els8_all.deb
    sha:10e510a59882af6e65a89911d1920b025a7c56d2
  • python3.5-minimal_3.5.2-2ubuntu0~16.04.13+tuxcare.els8_amd64.deb
    sha:e93a4f75ce2a78b2c93fca554bb6d12200f29a79
  • python3.5-venv_3.5.2-2ubuntu0~16.04.13+tuxcare.els8_amd64.deb
    sha:eaa997013fa6d47792300c361dfd7ae2edb45f0a
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.