[CLSA-2023:1691422609] python2: Fix of CVE-2023-24329
Type:
security
Severity:
Important
Release date:
2023-08-07
Description:
- CVE-2023-24329: part2: Start stripping C0 control and space chars in `urlsplit` - Also correct the first CVE-2023-24329 patch: Fix test_attributes_bad_scheme to check for non-ascii symbol as first character of url
Updated packages:
  • python2-2.7.18-10.el9.tuxcare.els4.x86_64.rpm
    sha:18b99aea3a1efb4c2cf98fc5a5b022a12ea95c6d
  • python2-debug-2.7.18-10.el9.tuxcare.els4.x86_64.rpm
    sha:38e1b98f76f1a34cfda3d45a0875c2345606693d
  • python2-devel-2.7.18-10.el9.tuxcare.els4.x86_64.rpm
    sha:84e04865779a679d292914e1f49edf4b3fa0faea
  • python2-libs-2.7.18-10.el9.tuxcare.els4.x86_64.rpm
    sha:78492a7793c6cb2350edc0638c38694a8a4b42e6
  • python2-test-2.7.18-10.el9.tuxcare.els4.x86_64.rpm
    sha:7517d1238649a85d5e3568649501baf3b1afdc31
  • python2-tkinter-2.7.18-10.el9.tuxcare.els4.x86_64.rpm
    sha:057cd578a7115268b4d46f5e843a3378841a3c4d
  • python2-tools-2.7.18-10.el9.tuxcare.els4.x86_64.rpm
    sha:948b396ce35d989f738c37ced6fae53adaa74f5b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.