Security fixes for CVE-2026-1299, CVE-2026-0865, CVE-2025-15366 and CVE-2025-15367. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-91d3384f04 2026-03-07 00:17:58.502509+00:00 -------------------------------------------------------------------------------- Name : python3.11 Product : Fedora 44 Version : 3.11.14 Release : 5.fc44 URL : https://www.python.org/ Summary : Version 3.11 of the Python interpreter Description : Python 3.11 is an accessible, high-level, dynamically typed, interpreted programming language, designed with an emphasis on code readability. It includes an extensive standard library, and has a vast ecosystem of third-party libraries. The python3.11 package provides the "python3.11" executable: the reference interpreter for the Python language, version 3. The majority of its standard library is provided in the python3.11-libs package, which should be installed automatically along with python3.11. The remaining parts of the Python standard library are broken out into the python3.11-tkinter and python3.11-test packages, which may need to be installed separately. Documentation for Python is provided in the python3.11-docs package. Packages containing additional libraries for Python are generally named with the "python3.11-" prefix. -------------------------------------------------------------------------------- Update Information: Security fixes for CVE-2026-1299, CVE-2026-0865, CVE-2025-15366 and CVE-2025-15367 -------------------------------------------------------------------------------- ChangeLog: * Mon Feb 9 2026 Tom\u0161 Hrn\u010diar - 3.11.14-5 - Security fixes for CVE-2026-0865, CVE-2025-15366 and CVE-2025-15367 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-91d3384f04' at the command line. For more information, refer to the dnfdocumentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- . Fedora 44 Python 3.11 receives crucial security fixes for multiple CVEs ensuring enhanced code reliability.. Python Updates, Fedora Security, Python 3.11 Fixes, CVE Security, Software Updates. . Severity: Important. LinuxSecurity.com Team
Update to 3.13.5, this release fixes the following CVEs: CVE 2024-12718, CVE 2025-4138, CVE 2025-4330, CVE-2025-4435, and CVE 2025-4517. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-47cf891973 2025-06-28 01:13:17.787564+00:00 -------------------------------------------------------------------------------- Name : python3.13 Product : Fedora 42 Version : 3.13.5 Release : 1.fc42 URL : https://www.python.org/ Summary : Version 3.13 of the Python interpreter Description : Python 3.13 is an accessible, high-level, dynamically typed, interpreted programming language, designed with an emphasis on code readability. It includes an extensive standard library, and has a vast ecosystem of third-party libraries. -------------------------------------------------------------------------------- Update Information: Update to 3.13.5, this release fixes the following CVEs: CVE 2024-12718, CVE 2025-4138, CVE 2025-4330, CVE-2025-4435, and CVE 2025-4517 -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 12 2025 Miro HronÄok - 3.13.5-1 - Update to 3.13.5 * Thu Jun 12 2025 Charalampos Stratakis - 3.13.4-2 - Enable PAC and BTI hardware protections for aarch64 * Wed Jun 4 2025 Tomáš HrnÄiar - 3.13.4-1 - Update to 3.13.4 * Mon Jun 2 2025 Python Maint - 3.13.3-4 - Rebuilt as non-main Python on Fedora 43 * Tue May 6 2025 Miro HronÄok - 3.13.3-3 - Drop requirement on python-wheel-wheel with setuptools > = 71 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-47cf891973' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys usedby the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- . The recent upgrade to Python 3.13 addresses numerous vulnerabilities, enhancing both security measures and operational efficiency in Fedora 42.. Fedora, python3.13 update, security advisory, important fixes. . Severity: Important. LinuxSecurity.com Team
Security fix for CVE-2025-0938. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-36baebad86 2025-02-13 02:20:47.624827+00:00 -------------------------------------------------------------------------------- Name : python3.14 Product : Fedora 41 Version : 3.14.0~a4 Release : 2.fc41 URL : https://www.python.org/ Summary : Version 3.14 of the Python interpreter Description : Python 3.14 is an accessible, high-level, dynamically typed, interpreted programming language, designed with an emphasis on code readability. It includes an extensive standard library, and has a vast ecosystem of third-party libraries. The python3.14 package provides the "python3.14" executable: the reference interpreter for the Python language, version 3. The majority of its standard library is provided in the python3.14-libs package, which should be installed automatically along with python3.14. The remaining parts of the Python standard library are broken out into the python3.14-tkinter and python3.14-test packages, which may need to be installed separately. Documentation for Python is provided in the python3.14-docs package. Packages containing additional libraries for Python are generally named with the "python3.14-" prefix. -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2025-0938 -------------------------------------------------------------------------------- ChangeLog: * Tue Feb 4 2025 Charalampos Stratakis - 3.14.0~a4-2 - Security fix for CVE-2025-0938 - Fixes: rhbz#2343273 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2343273 - CVE-2025-0938 python3.14: URL parser allowed square brackets in domain names [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2343273 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-36baebad86' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Python 3.11 is an accessible, high-level, dynamically typed, interpreted programming language, designed with an emphasis on code readability. It includes an extensive standard library, and has a vast ecosystem of third-party libraries. The python3.11 package provides the "python3.11" executable: the reference. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-5ea38dfb80 2024-12-12 02:29:32.892834+00:00 -------------------------------------------------------------------------------- Name : python3.11 Product : Fedora 40 Version : 3.11.11 Release : 1.fc40 URL : https://www.python.org/ Summary : Version 3.11 of the Python interpreter Description : Python 3.11 is an accessible, high-level, dynamically typed, interpreted programming language, designed with an emphasis on code readability. It includes an extensive standard library, and has a vast ecosystem of third-party libraries. The python3.11 package provides the "python3.11" executable: the reference interpreter for the Python language, version 3. The majority of its standard library is provided in the python3.11-libs package, which should be installed automatically along with python3.11. The remaining parts of the Python standard library are broken out into the python3.11-tkinter and python3.11-test packages, which may need to be installed separately. Documentation for Python is provided in the python3.11-docs package. Packages containing additional libraries for Python are generally named with the "python3.11-" prefix. -------------------------------------------------------------------------------- Update Information: Python 3.11.11 security release. Security content in this release gh-122792: Changed IPv4-mapped ipaddress.IPv6Address to consistently use the mapped IPv4 address value for deciding properties. Properties which have their behavior fixed are is_multicast, is_reserved, is_link_local, is_global, and is_unspecified. CVE-2024-9287: gh-124651:Properly quote template strings in venv activation scripts. -------------------------------------------------------------------------------- ChangeLog: * Tue Dec 3 2024 LumÃr Balhar - 3.11.11-1 - Update to 3.11.11 - Fixes: rhbz#2321655 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2321655 - CVE-2024-9287 python3.11: Virtual environment (venv) activation scripts don't quote paths [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2321655 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-5ea38dfb80' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- . The latest Fedora update to Python 3.11 introduces significant enhancements in code readability and security, ensuring a safer coding experience for all developers. Python 3.11 Update, Fedora Security Release, Code Readability, Python Interpreter. . Severity: Critical. LinuxSecurity.com Team
Moderate: python3.12 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2024:8447", "synopsis": "Moderate: python3.12 security update", "severity": "SEVERITY_MODERATE", "topic": "An update is available for python3.12.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Python 3.12 is an accessible, high-level, dynamically typed, interpreted programming language, designed with an emphasis on code readability. It includes an extensive standard library, and has a vast ecosystem of third-party libraries. The python3.12 package provides the \"python3.12\" executable: the reference interpreter for the Python language, version 3. The majority of its standard library is provided in the python3.12-libs package, which should be installed automatically along with python3.12. The remaining parts of the Python standard library are broken out into the python3.12-tkinter and python3.12-test packages, which may need to be installed separately. Documentation for Python is provided in the python3.12-docs package. Packages containing additional libraries for Python are generally named with the \"python3.12-\" prefix.\n\nSecurity Fix(es):\n\n* python: cpython: tarfile: ReDos via excessive backtracking while parsing header values (CVE-2024-6232)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2309426", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2309426", "description": ""}], "cves": [{"name": "CVE-2024-6232", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-6232", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}], "references": [],"publishedAt": "2024-10-25T17:17:22.727365Z", "rpms": {"Rocky Linux 9": {"nvras": ["python3.12-0:3.12.1-4.el9_4.4.aarch64.rpm", "python3.12-0:3.12.1-4.el9_4.4.i686.rpm", "python3.12-0:3.12.1-4.el9_4.4.ppc64le.rpm", "python3.12-0:3.12.1-4.el9_4.4.s390x.rpm", "python3.12-0:3.12.1-4.el9_4.4.src.rpm", "python3.12-0:3.12.1-4.el9_4.4.x86_64.rpm", "python3.12-debug-0:3.12.1-4.el9_4.4.aarch64.rpm", "python3.12-debug-0:3.12.1-4.el9_4.4.i686.rpm", "python3.12-debug-0:3.12.1-4.el9_4.4.ppc64le.rpm", "python3.12-debug-0:3.12.1-4.el9_4.4.s390x.rpm", "python3.12-debug-0:3.12.1-4.el9_4.4.x86_64.rpm", "python3.12-debuginfo-0:3.12.1-4.el9_4.4.aarch64.rpm", "python3.12-debuginfo-0:3.12.1-4.el9_4.4.ppc64le.rpm", "python3.12-debuginfo-0:3.12.1-4.el9_4.4.s390x.rpm", "python3.12-debuginfo-0:3.12.1-4.el9_4.4.x86_64.rpm", "python3.12-debugsource-0:3.12.1-4.el9_4.4.aarch64.rpm", "python3.12-debugsource-0:3.12.1-4.el9_4.4.ppc64le.rpm", "python3.12-debugsource-0:3.12.1-4.el9_4.4.s390x.rpm", "python3.12-debugsource-0:3.12.1-4.el9_4.4.x86_64.rpm", "python3.12-devel-0:3.12.1-4.el9_4.4.aarch64.rpm", "python3.12-devel-0:3.12.1-4.el9_4.4.i686.rpm", "python3.12-devel-0:3.12.1-4.el9_4.4.ppc64le.rpm", "python3.12-devel-0:3.12.1-4.el9_4.4.s390x.rpm", "python3.12-devel-0:3.12.1-4.el9_4.4.x86_64.rpm", "python3.12-idle-0:3.12.1-4.el9_4.4.aarch64.rpm", "python3.12-idle-0:3.12.1-4.el9_4.4.i686.rpm", "python3.12-idle-0:3.12.1-4.el9_4.4.ppc64le.rpm", "python3.12-idle-0:3.12.1-4.el9_4.4.s390x.rpm", "python3.12-idle-0:3.12.1-4.el9_4.4.x86_64.rpm", "python3.12-libs-0:3.12.1-4.el9_4.4.aarch64.rpm", "python3.12-libs-0:3.12.1-4.el9_4.4.i686.rpm", "python3.12-libs-0:3.12.1-4.el9_4.4.ppc64le.rpm", "python3.12-libs-0:3.12.1-4.el9_4.4.s390x.rpm", "python3.12-libs-0:3.12.1-4.el9_4.4.x86_64.rpm", "python3.12-test-0:3.12.1-4.el9_4.4.aarch64.rpm", "python3.12-test-0:3.12.1-4.el9_4.4.i686.rpm", "python3.12-test-0:3.12.1-4.el9_4.4.ppc64le.rpm", "python3.12-test-0:3.12.1-4.el9_4.4.s390x.rpm", "python3.12-test-0:3.12.1-4.el9_4.4.x86_64.rpm","python3.12-tkinter-0:3.12.1-4.el9_4.4.aarch64.rpm", "python3.12-tkinter-0:3.12.1-4.el9_4.4.i686.rpm", "python3.12-tkinter-0:3.12.1-4.el9_4.4.ppc64le.rpm", "python3.12-tkinter-0:3.12.1-4.el9_4.4.s390x.rpm", "python3.12-tkinter-0:3.12.1-4.el9_4.4.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Fedora 38 introduces Python 3.12, addressing key security vulnerabilities while improving code clarity across the board.. Rocky Linux updates, python3.12 security, moderate update, coding best practices. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.