Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Fedora 38: FEDORA-2024-8eaf80107a Critical: python-pygments ReDoS

fedora
Calendar Grey March 28, 2024
Dist Fedora Esm H88
The recent Python-pygments security patch addresses CVE-2022-40896 concerns, providing crucial enhancements for users on Fedora 38.
Security fix for CVE-2022-40896

Summary

Pygments is a generic syntax highlighter suitable for use in code hosting,

forums, wikis or other applications that need to prettify source code.

Highlights are:

* a wide range of over 500 languages and other text formats is supported

* special attention is paid to details that increase highlighting quality

* support for new languages and formats are added easily;

most languages use a simple regex-based lexing mechanism

* a number of output formats is available, among them HTML, RTF, LaTeX

and ANSI sequences

* it is usable as a command-line tool and as a library

Update Information:

Security fix for CVE-2022-40896

Change Log

* Sun Mar 17 2024 Charalampos Stratakis - 2.14.0-2 - Security fix for CVE-2022-40896 - Fixes: rhbz#2259082

References


[ 1 ] Bug #2259082 - [F38] CVE-2022-40896 python-pygments: pygments: ReDoS in pygments [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2259082

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-8eaf80107a' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: python-pygments
Product: Fedora 38
Version: 2.14.0
Release: 2.fc38
Summary: Syntax highlighting engine written in Python

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here