This update for python3 fixes the following issues:
- Fixed CVE-2020-27619 (bsc#1178009), where
Lib/test/multibytecodec_support calls eval() on content retrieved via
HTTP.
- Change setuptools and pip version numbers according to new wheels
- Handful of changes to make python36 compatible with SLE15 and SLE12
(jsc#ECO-2799, jsc#SLE-13738)
- add triplets for mips-r6 and riscv
- RISC-V needs CTYPES_PASS_BY_REF_HACK
Update to 3.6.12 (bsc#1179193)
* Ensure python3.dll is loaded from correct locations when Python is
embedded
* The __hash__() methods of ipaddress.IPv4Interface and
ipaddress.IPv6Interface incorrectly generated constant hash values of 32
and 128 respectively. This resulted in always causing hash collisions.
The fix uses hash() to generate hash values for the tuple of (address,
mask length, network address).
* Prevent http header injection by rejecting control characters in
...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.2:
zypper in -t patch openSUSE-2020-2332=1
- openSUSE Leap 15.2 (i586 x86_64):
libpython3_6m1_0-3.6.12-lp152.4.12.2
libpython3_6m1_0-debuginfo-3.6.12-lp152.4.12.2
python3-3.6.12-lp152.4.12.2
python3-base-3.6.12-lp152.4.12.2
python3-base-debuginfo-3.6.12-lp152.4.12.2
python3-core-debugsource-3.6.12-lp152.4.12.2
python3-curses-3.6.12-lp152.4.12.2
python3-curses-debuginfo-3.6.12-lp152.4.12.2
python3-dbm-3.6.12-lp152.4.12.2
python3-dbm-debuginfo-3.6.12-lp152.4.12.2
python3-debuginfo-3.6.12-lp152.4.12.2
python3-debugsource-3.6.12-lp152.4.12.2
python3-devel-3.6.12-lp152.4.12.2
python3-devel-debuginfo-3.6.12-lp152.4.12.2
python3-doc-3.6.12-lp152.4.12.2
python3-doc-devhelp-3.6.12-lp152.4.12.2
python3-idle-3.6.12-lp152.4.12.2
python3-testsuite-3.6.12-lp152.4.12.2
python3-testsuite-debuginfo-3.6.12-lp152.4.12.2
python3-tk-3.6.12-lp152.4.12.2
python3-tk-debuginfo-3.6.12-lp152.4.12.2
python3-tools-3.6.12-lp152.4.12.2
- openSUSE Leap 15.2 (x86_64):
libpython3_6m1_0-32bit-3.6.12-lp152.4.12.2
libpython3_6m1_0-32bit-debuginfo-3.6.12-lp152.4.12.2
python3-32bit-3.6.12-lp...
Read the Full Advisoryhttps://www.suse.com/security/cve/CVE-2019-16935.html
https://www.suse.com/security/cve/CVE-2019-18348.html
https://www.suse.com/security/cve/CVE-2019-20907.html
https://www.suse.com/security/cve/CVE-2019-5010.html
https://www.suse.com/security/cve/CVE-2020-14422.html
https://www.suse.com/security/cve/CVE-2020-26116.html
https://www.suse.com/security/cve/CVE-2020-27619.html
https://www.suse.com/security/cve/CVE-2020-8492.html
https://bugzilla.suse.com/1155094
https://bugzilla.suse.com/1174091
https://bugzilla.suse.com/1174571
https://bugzilla.suse.com/1174701
https://bugzilla.suse.com/1177211
https://bugzilla.suse.com/1178009
https://bugzilla.suse.com/1179193
https://bugzilla.suse.com/1179630
--===============6929779112252390020=
Get the latest Linux and open source security news straight to your inbox.