[CLSA-2025:1739904482] Fix CVE(s): CVE-2024-6232, CVE-2024-6923
Type:
security
Severity:
Important
Release date:
2025-02-18 18:48:07 UTC
Description:
* SECURITY UPDATE: Regular expressions that allowed excessive backtracking during tarfile - debian/patches/CVE-2024-6232.patch: Fix header parsing vulnerability that could lead to ReDoS - CVE-2024-6923
Updated packages:
  • idle-python3.6_3.6.9-1~18.04ubuntu1.12+tuxcare.els10_all.deb
    sha:cb9e8dc00a2444d3daad89d4ecdf55d6d3c7785d
  • libpython3.6_3.6.9-1~18.04ubuntu1.12+tuxcare.els10_amd64.deb
    sha:727b9ff43bf058dedcd5e80962a49ebe2e8586e6
  • libpython3.6-dev_3.6.9-1~18.04ubuntu1.12+tuxcare.els10_amd64.deb
    sha:a65ba92a86f569c5155eb3cad2b8540d878004b9
  • libpython3.6-minimal_3.6.9-1~18.04ubuntu1.12+tuxcare.els10_amd64.deb
    sha:0892f8a760eaa0b4efbb9e175ed493413e132f0c
  • libpython3.6-stdlib_3.6.9-1~18.04ubuntu1.12+tuxcare.els10_amd64.deb
    sha:9504a4e8256ceeece335ff400af20926b12f88b6
  • libpython3.6-testsuite_3.6.9-1~18.04ubuntu1.12+tuxcare.els10_all.deb
    sha:8c877c90eb11064e4579a02684957f60b9cd26d9
  • python3.6_3.6.9-1~18.04ubuntu1.12+tuxcare.els10_amd64.deb
    sha:5fad2070e40fda4cb68aff8f558544a7f60f5382
  • python3.6-dev_3.6.9-1~18.04ubuntu1.12+tuxcare.els10_amd64.deb
    sha:bf8a2b9920427bb28f149fb5b6d4fae108592e57
  • python3.6-doc_3.6.9-1~18.04ubuntu1.12+tuxcare.els10_all.deb
    sha:e5b025f43f30b81e33340f0e590a6da3106cc20f
  • python3.6-examples_3.6.9-1~18.04ubuntu1.12+tuxcare.els10_all.deb
    sha:f8bc00f562ba74811515525b4c313521fac5856c
  • python3.6-minimal_3.6.9-1~18.04ubuntu1.12+tuxcare.els10_amd64.deb
    sha:a689038094ca6655152cb1fd34fb3e5cc7da60be
  • python3.6-venv_3.6.9-1~18.04ubuntu1.12+tuxcare.els10_amd64.deb
    sha:aa6070e5b10482610897265f80f32754daa0f5f1
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.