Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Fedora 39 - FEDORA-2024-9c81ad492a critical: micropython buffer issues

fedora
Calendar Grey October 31, 2024
Dist Fedora Esm H88
Essential improvements for micropython 1.23.0 in Fedora 39 target security vulnerabilities and boost overall reliability.
Update to 1.23.0

Summary

Implementation of Python 3 with very low memory footprint

Update Information:

Update to 1.23.0

Change Log

* Thu Oct 17 2024 Charalampos Stratakis - 1.23.0-1 - Update to 1.23.0 - Security fixes for CVE-2024-8946, CVE-2024-8947, CVE-2024-8948 Resolves: rhbz#2312926, rhbz#2312923, rhbz#2312921 * Thu Jul 18 2024 Fedora Release Engineering - 1.22.2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild

References


[ 1 ] Bug #2312921 - CVE-2024-8948 micropython: heap buffer overflow via int_to_bytes [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2312921 [ 2 ] Bug #2312923 - CVE-2024-8947 micropython: use after free vulnerability [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2312923 [ 3 ] Bug #2312926 - CVE-2024-8946 micropython: heap buffer overflow via mp_vfs_umount [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2312926

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-9c81ad492a' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: micropython
Product: Fedora 39
Version: 1.23.0
Release: 1.fc39
Summary: Implementation of Python 3 with very low memory footprint

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here