Alerts This Week
Warning Icon 1 1,295
Alerts This Week
Warning Icon 1 1,295

Ubuntu 18.04 LTS USN-5767-3 Python Code Execution Risk Advisory

ubuntu
Calendar Grey March 6, 2023
Dist Ubuntu Esm H88
Remediation measures for various Python vulnerabilities identified in USN-5767-3 on Ubuntu 18.04 LTS, which pose a risk of arbitrary code execution.
Several security issues were fixed in Python.

Summary

Several security issues were fixed in Python.

Software Description:

- python3.6: An interactive high-level object-oriented language

Details:

USN-5767-1 fixed vulnerabilities in Python. This update fixes the problem

for Ubuntu 18.04 LTS.

Original advisory details:

Nicky Mouha discovered that Python incorrectly handled certain SHA-3 internals.

An attacker could possibly use this issue to cause a crash or execute arbitrary code.

(CVE-2022-37454)

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 18.04 LTS:
  python3.6                       3.6.9-1~18.04ubuntu1.10

In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-5767-3

CVE-2022-37454, https://bugs.launchpad.net/ubuntu/+source/pypy3/+bug/1995197

Severity
important
Lowest
Low
Medium
High
Critical

March 06, 2023

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here