Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Fedora 25 FEDORA-2016-2d90e27e50 Critical: python-cryptography Fix

fedora
Calendar Grey November 19, 2016
Dist Fedora Esm H88
This patch addresses CVE-2016-9243 in the python-cryptography package for Fedora 25. Verify that you are running version 1.5.3.
Rebase to 1.5.3 to fix CVE-2016-9243

Summary

cryptography is a package designed to expose cryptographic primitives and

recipes to Python developers.

Update Information:

Rebase to 1.5.3 to fix CVE-2016-9243

Change Log

References


[ 1 ] Bug #1393432 - CVE-2016-9243 python-cryptography: HKDF might return an empty byte-string [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1393432 [ 2 ] Bug #1361916 - python-cryptography - Missing python2-subpackage https://bugzilla.redhat.com/show_bug.cgi?id=1361916 [ 3 ] Bug #1279263 - python-cryptography-vectors needs upgrade for the security bug https://bugzilla.redhat.com/show_bug.cgi?id=1279263

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade python-cryptography' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: python-cryptography
Product: Fedora 25
Version: 1.5.3
Release: 3.fc25
Summary: PyCA's cryptography library

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here