{"type":"TYPE_SECURITY","shortCode":"RL","name":"RLSA-2022:8492","synopsis":"Important: python39:3.9 security update","severity":"SEVERITY_IMPORTANT","topic":"An update for the python39:3.9 module is now available for Rocky Linux 8, Rocky Linux 8.4 Extended Update Support, and Rocky Linux 8.6 Extended Update Support.\nRocky Enterprise Software Foundation Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.","description":"Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.","solution":null,"affectedProducts":["Rocky Linux 8"],"fixes":[{"ticket":"2138705","sourceBy":"Red Hat","sourceLink":"https:\/\/bugzilla.redhat.com\/show_bug.cgi?id=2138705","description":"CVE-2022-42919 python: local privilege escalation via the multiprocessing forkserver start method"}],"cves":[{"name":"CVE-2022-42919","sourceBy":"Red Hat","sourceLink":"https:\/\/access.redhat.com\/hydra\/rest\/securitydata\/cve\/CVE-2022-42919.json","cvss3ScoringVector":"CVSS:3.1\/AV:L\/AC:L\/PR:L\/UI:N\/S:U\/C:H\/I:H\/A:H","cvss3BaseScore":"7.8","cwe":"CWE-269"}],"references":[],"publishedAt":"2022-11-22T18:24:40.646353Z","rpms":{},"rebootSuggested":false,"buildReferences":[]}

Rocky Linux: RLSA-2022:8492 python39

November 22, 2022
An update for the python39:3.9 module is now available for Rocky Linux 8, Rocky Linux 8.4 Extended Update Support, and Rocky Linux 8.6 Extended Update Support. Rocky Enterprise Software Foundation Product Security has rated this update as having a security impact of Important

Summary

An update for the python39:3.9 module is now available for Rocky Linux 8, Rocky Linux 8.4 Extended Update Support, and Rocky Linux 8.6 Extended Update Support. Rocky Enterprise Software Foundation Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

RPMs

References

No References

CVEs

https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2022-42919.json

Severity
Name: RLSA-2022:8492
Affected Products: Rocky Linux 8

Fixes

https://bugzilla.redhat.com/show_bug.cgi?id=2138705


Related News