[CLSA-2023:1689886296] python: Fix of CVE-2023-24329
Type:
security
Severity:
Important
Release date:
2023-07-20
Description:
- CVE-2023-24329: part2: Start stripping C0 control and space chars in `urlsplit` - Also correct the first CVE-2023-24329 patch: Fix test_attributes_bad_scheme to check for non-ascii symbol as first character of url
Updated packages:
  • python-2.6.6-70.el6.tuxcare.els10.i686.rpm
    sha:e386fcdbc191636adbc103dec1f9ad16affee3aa
  • python-2.6.6-70.el6.tuxcare.els10.x86_64.rpm
    sha:d842964d54e59586bd0db0895bc0e135f5fbe2b7
  • python-devel-2.6.6-70.el6.tuxcare.els10.i686.rpm
    sha:960744a216505cbd70ccb622aa04bd790f2bb6cc
  • python-devel-2.6.6-70.el6.tuxcare.els10.x86_64.rpm
    sha:8c8a82f521031c2fbb9c977e75cd4f671d3eff0c
  • python-libs-2.6.6-70.el6.tuxcare.els10.i686.rpm
    sha:301822cdfff83a010af524ad595bd3508a3de8fe
  • python-libs-2.6.6-70.el6.tuxcare.els10.x86_64.rpm
    sha:5d87421e665f89c0536548cd896fed114a6433aa
  • python-test-2.6.6-70.el6.tuxcare.els10.x86_64.rpm
    sha:ffc0cf15f5753b1801b75135050d9096928b6b9c
  • python-tools-2.6.6-70.el6.tuxcare.els10.x86_64.rpm
    sha:1347e7a1f1308ca25b6e1d7b8b8ebe5d7c8fd9d9
  • tkinter-2.6.6-70.el6.tuxcare.els10.x86_64.rpm
    sha:a578f0f600296d925ba160ec69cda91dad6bc76b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.