[CLSA-2023:1689885838] Fix CVE(s): CVE-2023-24329
Type:
security
Severity:
Important
Release date:
2023-07-20 20:44:03 UTC
Description:
* SECURITY UPDATE: urllib.parse space handling CVE-2023-24329 appears unfixed - debian/patches/CVE-2023-24329-2-v2.7.patch: Start stripping C0 control and space chars in `urlsplit` - debian/patches/CVE-2023-24329-v2.7.patch: Fix test_attributes_bad_scheme to check for non-ascii symbol as first character of url - CVE-2023-24329
Updated packages:
  • idle-python2.7_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_all.deb
    sha:f5cbc4dac8051829854d6c1df6bef47357e9d423
  • libpython2.7_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb
    sha:6fec3775f46920ade23d18017e54b0efbd0b1208
  • libpython2.7-dev_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb
    sha:d3066b5ff09ab6b47a0028ceb8bd33f01e3db4a8
  • libpython2.7-minimal_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb
    sha:5c68825deecaf6d59a7ddd04c7597fbc1fa9be88
  • libpython2.7-stdlib_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb
    sha:ce6496efff46cf2e76975651b3775e7ae6dc767f
  • libpython2.7-testsuite_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_all.deb
    sha:243cf1339489b8b80a03072ff9e891d4075bd1cf
  • python2.7_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb
    sha:41c40785d064d424e5567c28be37f99a2f82c8e8
  • python2.7-dev_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb
    sha:99e2750aba4c8f9620f1e38e2c40a208f7490f5a
  • python2.7-doc_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_all.deb
    sha:79e5cd1c0649593d5956b45e015956cc40163e9c
  • python2.7-examples_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_all.deb
    sha:dbeef8ef34fd095d3da0ca0f1af857dc2053de13
  • python2.7-minimal_2.7.12-1ubuntu0~16.04.18+tuxcare.els7_amd64.deb
    sha:fda2f23bba32b017368fa26305b9e520e2abd56d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.