Alerts This Week
Warning Icon 1 687
Alerts This Week
Warning Icon 1 687

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
98

Red Hat: RHSA-2005:108-01 Critical: Python Object Traversal Issue

Updated Python packages that fix several security issues are now available for Red Hat Enterprise Linux 4. This update has been rated as having important security impact by the Red Hat Security Response Team. - --------------------------------------------------------------------- Red Hat Security Advisory Synopsis: Important: python security update Advisory ID: RHSA-2005:108-01 Advisory URL: https://access.redhat.com/errata/RHSA-2005:108.html Issue date: 2005-02-15 Updated on: 2005-02-15 Product: Red Hat Enterprise Linux CVE Names: CAN-2005-0089 - ---------------------------------------------------------------------1. Summary: Updated Python packages that fix several security issues are now available for Red Hat Enterprise Linux 4. This update has been rated as having important security impact by the Red Hat Security Response Team 2. Relevant releases/architectures: Red Hat Enterprise Linux AS version 4 - i386, ia64, ppc, s390, s390x, x86_64 Red Hat Enterprise Linux Desktop version 4 - i386, x86_64 Red Hat Enterprise Linux ES version 4 - i386, ia64, x86_64 Red Hat Enterprise Linux WS version 4 - i386, ia64, x86_64 3. Problem description: Python is an interpreted, interactive, object-oriented programming language. An object traversal bug was found in the Python SimpleXMLRPCServer. This bug could allow a remote untrusted user to do unrestricted object traversal and allow them to access or change function internals using the im_* and func_* attributes. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2005-0089 to this issue. Users of Python are advised to upgrade to these updated packages, which contain backported patches to correct these issues. 4. Solution: Before applying this update, make sure that all previously-released errata relevant to your system have been applied. Use Red Hat Network to download and update your packages. To launch theRed Hat Update Agent, use the following command: up2date For information on how to install packages manually, refer to the following Web page for the System Administration or Customization guide specific to your system: https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/10/ 5. Bug IDs fixed (http://bugzilla.redhat.com/): 146649 - CAN-2005-0089 python SimpleXMLRPCServer security issue 6. RPMs required: Red Hat Enterprise Linux AS version 4: SRPMS: d189468154d7cf63aa6af6678cb8613d python-2.3.4-14.1.src.rpm i386: 2712b8f9d2912600d8f646d35f689996 python-2.3.4-14.1.i386.rpm be88db797f56d1a501ed3732757b657d python-devel-2.3.4-14.1.i386.rpm 20a88af26a767018c87e39032552a57a python-docs-2.3.4-14.1.i386.rpm 05a2588346ef5950ae83b76f140cd029 python-tools-2.3.4-14.1.i386.rpm 689f7fc46cf2e5e2107653f5f338f471 tkinter-2.3.4-14.1.i386.rpm ia64: 6ba1f92092692ce7dc000f2396444430 python-2.3.4-14.1.ia64.rpm f45375f74a80c5a541c5c6f8c511c6ed python-devel-2.3.4-14.1.ia64.rpm aea178005376626a739f9e9deb46d85e python-docs-2.3.4-14.1.ia64.rpm 68884aa4b76210190f984b0a644b7bcc python-tools-2.3.4-14.1.ia64.rpm 1182fdc4661ee0aaa6187a4adcf88309 tkinter-2.3.4-14.1.ia64.rpm ppc: ef9131d7daa839fb8b80051c0a248ec8 python-2.3.4-14.1.ppc.rpm 974938aea5959d3b9d7dfe17bee28bc8 python-devel-2.3.4-14.1.ppc.rpm 29b6d4fc9a8e46a5dd4ea76eb0262ec5 python-docs-2.3.4-14.1.ppc.rpm ad59f7d118c70b89c522a28054df5abd python-tools-2.3.4-14.1.ppc.rpm 85e2c0aec90cd30f2b6a0bb4f711f06e tkinter-2.3.4-14.1.ppc.rpm s390: c2c5d0e3a66dcfd17ebaffdadbb84d8a python-2.3.4-14.1.s390.rpm 1192f7711e7296bd55e407afe275dea2 python-devel-2.3.4-14.1.s390.rpm baaccfd176d523a9019befc6ca3e4546 python-docs-2.3.4-14.1.s390.rpm 757b1117779443567ae9f9ba5470397d python-tools-2.3.4-14.1.s390.rpm 8ab54fcc6429685ca89a004255da2302 tkinter-2.3.4-14.1.s390.rpm s390x: 7364a75ad005e960d90c68c26db1b9d6 python-2.3.4-14.1.s390x.rpm 57ed41904fd90af8020cb2a12c6b9efa python-devel-2.3.4-14.1.s390x.rpm 5c001929d0620a477310cfcc611b57bf python-docs-2.3.4-14.1.s390x.rpm 4ec4346b001bd2b2568ac7b3d2fc18ba python-tools-2.3.4-14.1.s390x.rpm cd2d59c73aa0dee5c8140b653b74792c tkinter-2.3.4-14.1.s390x.rpm x86_64: ba4668c9e17ec0a36950f84a6e4d6ed9 python-2.3.4-14.1.x86_64.rpm 51c6c2801c10e1ab406303446b2b2f11 python-devel-2.3.4-14.1.x86_64.rpm 5f32fc6f75760f31ca259534af097eb2 python-docs-2.3.4-14.1.x86_64.rpm fdabec76f02d3616b5a540f0402c5237 python-tools-2.3.4-14.1.x86_64.rpm 26bb9a58781a462848dc632bfd08eb81 tkinter-2.3.4-14.1.x86_64.rpm Red Hat Enterprise Linux Desktop version 4: SRPMS: d189468154d7cf63aa6af6678cb8613d python-2.3.4-14.1.src.rpm i386: 2712b8f9d2912600d8f646d35f689996 python-2.3.4-14.1.i386.rpm be88db797f56d1a501ed3732757b657d python-devel-2.3.4-14.1.i386.rpm 20a88af26a767018c87e39032552a57a python-docs-2.3.4-14.1.i386.rpm 05a2588346ef5950ae83b76f140cd029 python-tools-2.3.4-14.1.i386.rpm 689f7fc46cf2e5e2107653f5f338f471 tkinter-2.3.4-14.1.i386.rpm x86_64: ba4668c9e17ec0a36950f84a6e4d6ed9 python-2.3.4-14.1.x86_64.rpm 51c6c2801c10e1ab406303446b2b2f11 python-devel-2.3.4-14.1.x86_64.rpm 5f32fc6f75760f31ca259534af097eb2 python-docs-2.3.4-14.1.x86_64.rpm fdabec76f02d3616b5a540f0402c5237 python-tools-2.3.4-14.1.x86_64.rpm 26bb9a58781a462848dc632bfd08eb81 tkinter-2.3.4-14.1.x86_64.rpm Red Hat Enterprise Linux ES version 4: SRPMS: d189468154d7cf63aa6af6678cb8613d python-2.3.4-14.1.src.rpm i386: 2712b8f9d2912600d8f646d35f689996 python-2.3.4-14.1.i386.rpm be88db797f56d1a501ed3732757b657d python-devel-2.3.4-14.1.i386.rpm 20a88af26a767018c87e39032552a57a python-docs-2.3.4-14.1.i386.rpm 05a2588346ef5950ae83b76f140cd029 python-tools-2.3.4-14.1.i386.rpm 689f7fc46cf2e5e2107653f5f338f471 tkinter-2.3.4-14.1.i386.rpm ia64: 6ba1f92092692ce7dc000f2396444430 python-2.3.4-14.1.ia64.rpm f45375f74a80c5a541c5c6f8c511c6ed python-devel-2.3.4-14.1.ia64.rpm aea178005376626a739f9e9deb46d85e python-docs-2.3.4-14.1.ia64.rpm 68884aa4b76210190f984b0a644b7bcc python-tools-2.3.4-14.1.ia64.rpm 1182fdc4661ee0aaa6187a4adcf88309 tkinter-2.3.4-14.1.ia64.rpm x86_64: ba4668c9e17ec0a36950f84a6e4d6ed9 python-2.3.4-14.1.x86_64.rpm 51c6c2801c10e1ab406303446b2b2f11 python-devel-2.3.4-14.1.x86_64.rpm 5f32fc6f75760f31ca259534af097eb2 python-docs-2.3.4-14.1.x86_64.rpm fdabec76f02d3616b5a540f0402c5237 python-tools-2.3.4-14.1.x86_64.rpm 26bb9a58781a462848dc632bfd08eb81 tkinter-2.3.4-14.1.x86_64.rpm Red Hat Enterprise Linux WS version 4: SRPMS: d189468154d7cf63aa6af6678cb8613d python-2.3.4-14.1.src.rpm i386: 2712b8f9d2912600d8f646d35f689996 python-2.3.4-14.1.i386.rpm be88db797f56d1a501ed3732757b657d python-devel-2.3.4-14.1.i386.rpm 20a88af26a767018c87e39032552a57a python-docs-2.3.4-14.1.i386.rpm 05a2588346ef5950ae83b76f140cd029 python-tools-2.3.4-14.1.i386.rpm 689f7fc46cf2e5e2107653f5f338f471 tkinter-2.3.4-14.1.i386.rpm ia64: 6ba1f92092692ce7dc000f2396444430 python-2.3.4-14.1.ia64.rpm f45375f74a80c5a541c5c6f8c511c6ed python-devel-2.3.4-14.1.ia64.rpm aea178005376626a739f9e9deb46d85e python-docs-2.3.4-14.1.ia64.rpm 68884aa4b76210190f984b0a644b7bcc python-tools-2.3.4-14.1.ia64.rpm 1182fdc4661ee0aaa6187a4adcf88309 tkinter-2.3.4-14.1.ia64.rpm x86_64: ba4668c9e17ec0a36950f84a6e4d6ed9 python-2.3.4-14.1.x86_64.rpm 51c6c2801c10e1ab406303446b2b2f11 python-devel-2.3.4-14.1.x86_64.rpm 5f32fc6f75760f31ca259534af097eb2 python-docs-2.3.4-14.1.x86_64.rpm fdabec76f02d3616b5a540f0402c5237 python-tools-2.3.4-14.1.x86_64.rpm 26bb9a58781a462848dc632bfd08eb81 tkinter-2.3.4-14.1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7. References: https://www.python.org/blogs/ https://www.cve.org/CVERecord?id=CAN-2005-0089 8. Contact: The Red Hat security contact is . More contact details athttps://access.redhat.com/security/team/contact/ Copyright 2005 Red Hat, Inc. . Essential Python security patches for users of Red Hat Enterprise Linux aimed at resolving vulnerabilities classified as critical by Red Hat.. Python Security Update, Red Hat Advisory, Security Issues, Critical Update. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 15, 2005 Important Red Hat
89

Fedora Core 3 FEDORA-2005-114 Critical: Python Object Traversal Issue

n object traversal bug was found in the Python SimpleXMLRPCServer.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-114 2005-02-04 ---------------------------------------------------------------------Product : Fedora Core 3 Name : python Version : 2.3.4 Release : 13.1 Summary : An interpreted, interactive, object-oriented programming language. Description : Python is an interpreted, interactive, object-oriented programming language often compared to Tcl, Perl, Scheme or Java. Python includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems (X11, Motif, Tk, Mac and MFC). Programmers can write new built-in modules for Python in C or C++. Python can be used as an extension language for applications that need a programmable interface. This package contains most of the standard Python modules, as well as modules for interfacing to the Tix widget set for Tk and RPM. Note that documentation for Python is provided in the python-docs package. ---------------------------------------------------------------------Update Information: n object traversal bug was found in the Python SimpleXMLRPCServer. This bug could allow a remote untrusted user to do unrestricted object traversal and allow them to access or change function internals using the im_* and func_* attributes. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2005-0089 to this issue. Users of Python are advised to upgrade to these updated packages, which contain backported patches to correct this issue. ---------------------------------------------------------------------* Wed Feb 02 2005 Mihai Ibanescu 2.3.4-13.1 - Fixed security issue in SimpleXMLRPCServer.py (#146647) ---------------------------------------------------------------------This update canbe downloaded from: 630b13c1bdab4a97d19c106337a1ef13 SRPMS/python-2.3.4-13.1.src.rpm 8d8943411acc21380675cb520e2db497 x86_64/python-2.3.4-13.1.x86_64.rpm 76aaf0ce8b1df380832e136650c2ad6c x86_64/python-devel-2.3.4-13.1.x86_64.rpm 0b76e2086edf2a71cfb0aaa11715d947 x86_64/python-tools-2.3.4-13.1.x86_64.rpm e0890269685592a16cd771347cd57871 x86_64/python-docs-2.3.4-13.1.x86_64.rpm 70f8add857c4283df874f01dd66224bd x86_64/tkinter-2.3.4-13.1.x86_64.rpm e9af58534ac3f24ff688dac8acd2b535 x86_64/debug/python-debuginfo-2.3.4-13.1.x86_64.rpm fa6ad54679db113a253c0d0d00cb69c2 i386/python-2.3.4-13.1.i386.rpm 51d1be66c01c752e4c1b1709088336e0 i386/python-devel-2.3.4-13.1.i386.rpm ed20dcab56bfe0d0a585eed7ff79cf5f i386/python-tools-2.3.4-13.1.i386.rpm 99596c5ae22b6d16cbb58517238472e9 i386/python-docs-2.3.4-13.1.i386.rpm d51c2757c47afb79a7d634aad21cd717 i386/tkinter-2.3.4-13.1.i386.rpm 45c90d5c96730eb5abba820269bce3a3 i386/debug/python-debuginfo-2.3.4-13.1.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . ---------------------------------------------------------------------Fedora Update Notification FEDO. object, traversal, found, python, simplexmlrpcserver, ---------------------------------. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Feb 04, 2005 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here