Alerts This Week
Warning Icon 1 666
Alerts This Week
Warning Icon 1 666

Fedora 38: FEDORA-2023-abc123def Critical: Python 3.11 Vulnerability Patch

fedora
Calendar Grey May 31, 2023
Dist Fedora Esm H88
Fedora 38 has rolled out an update for Python 3.10, which addresses critical vulnerabilities, specifically CVE-2023-24329, that pose serious security risks.
Fix for CVE-2023-24329

Summary

Python 3.10 is an accessible, high-level, dynamically typed, interpreted

programming language, designed with an emphasis on code readability.

It includes an extensive standard library, and has a vast ecosystem of

third-party libraries.

The python3.10 package provides the "python3.10" executable: the reference

interpreter for the Python language, version 3.

The majority of its standard library is provided in the python3.10-libs package,

which should be installed automatically along with python3.10.

The remaining parts of the Python standard library are broken out into the

python3.10-tkinter and python3.10-test packages, which may need to be installed

separately.

Documentation for Python is provided in the python3.10-docs package.

Packages containing additional libraries for Python are generally named with

the "python3.10-" prefix.

Fix for CVE-2023-24329

* Mon May 29 2023 Charalampos Stratakis - 3.10.11-2

- Fix for CVE-2023-24329

Resolves: rhbz#2174010

[ 1 ] Bug #2174010 - CVE-2023-24329 python3.10: python: urllib.parse url blocklisting bypass [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=2174010

su -c 'dnf upgrade --advisory FEDORA-2023-994ecd7dbc' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Do not reply to spam, report it:

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 38
Version: 3.10.11
Release: 2.fc38
Summary: Version 3.10 of the Python interpreter

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here