Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Fedora 41: python-virtualenv 2024-89014f5794 Security Advisory Updates

fedora
Calendar Grey October 12, 2024
Dist Fedora Esm H88
Update to python-virtualenv on Fedora 41 prevents command injection issues by quoting template strings in activation scripts.
Prevent command injection by quoting template strings in activation scripts

Summary

virtualenv is a tool to create isolated Python environments. virtualenv

is a successor to workingenv, and an extension of virtual-python. It is

written by Ian Bicking, and sponsored by the Open Planning Project. It is

licensed under an MIT-style permissive license.

Update Information:

Prevent command injection by quoting template strings in activation scripts

Change Log

* Tue Oct 8 2024 Lumir Balhar - 20.21.1-25 - Make tests with Python 2.7 optional * Tue Oct 8 2024 Lumir Balhar - 20.21.1-24 - Prevent command injection by quoting template strings in activation scripts

References

Fedora Update Notification FEDORA-2024-89014f5794 2024-10-12 00:17:42.525631 Name : python-virtualenv Product : Fedora 41 Version : 20.21.1 Release : 25.fc41 URL : https://pypi.org/project/virtualenv/ Summary : Tool to create isolated Python environments Description : virtualenv is a tool to create isolated Python environments. virtualenv is a successor to workingenv, and an extension of virtual-python. It is written by Ian Bicking, and sponsored by the Open Planning Project. It is licensed under an MIT-style permissive license.

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-89014f5794' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: python-virtualenv
Product: Fedora 41
Version: 20.21.1
Release: 25.fc41
Summary: Tool to create isolated Python environments

Topics%20covered

Topics Covered

No topics assigned

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here