Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
89

Fedora 32 python34 Update: FEDORA-2020-d30881c970 Critical DoS Risk

* CVE-2019-20907: Avoid infinite loop in the tarfile module * CVE-2020-14422: Resolve hash collisions for IPv4Interface and IPv6Interface * CVE-2020-26116: HTTP request method CRLF injection in httplib This update brings Fedora 32's python34 in sync with the EPEL7 package.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-d30881c970 2020-10-16 15:18:47.312128 --------------------------------------------------------------------------------Name : python34 Product : Fedora 32 Version : 3.4.10 Release : 11.fc32 URL : https://www.python.org/ Summary : Version 3.4 of the Python programming language Description : Python 3.4 package for developers. This package exists to allow developers to test their code against an older version of Python. This is not a full Python stack and if you wish to run your applications with Python 3.4, see other distributions that support it, such as CentOS or RHEL with Software Collections. --------------------------------------------------------------------------------Update Information: * CVE-2019-20907: Avoid infinite loop in the tarfile module * CVE-2020-14422: Resolve hash collisions for IPv4Interface and IPv6Interface * CVE-2020-26116: HTTP request method CRLF injection in httplib This update brings Fedora 32's python34 in sync with the EPEL7 package. --------------------------------------------------------------------------------ChangeLog: * Wed Sep 30 2020 Petr Viktorin - 3.4.10-11 - CVE-2019-20907: Avoid infinite loop in the tarfile module - CVE-2020-14422: Resolve hash collisions for IPv4Interface and IPv6Interface - CVE-2020-26116: HTTP request method CRLF injection in httplib - update test certs and keys --------------------------------------------------------------------------------References: [ 1 ] Bug #1854938 - CVE-2020-14422 python34: python: Denial of service via inefficiency in IPv{4,6}Interface classes [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1854938 [ 2 ] Bug #1856491 - CVE-2019-20907 python34: python: infinite loop in the tarfile module via a craft TAR archive [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1856491 [ 3 ] Bug #1883245 - CVE-2020-26116 python34: python: CRLF injection via HTTP request method in httplib/http.client [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1883245 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-d30881c970' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . The recent update for Fedora 32 brings crucial improvements for python34, addressing major security vulnerabilities to enhance protection against attacks and improve stability. Python 3.4, Fedora Update, Security Issues. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Oct 16, 2020 Critical Fedora
89

Fedora 30: FEDORA-2019-2b1f72899a Critical Python34 Threat Fix

Fix CVE-2019-16056 (rhbz#1750457) ---- Fix CVE-2019-10160 (rhbz#1718867). --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-2b1f72899a 2019-09-19 01:28:48.404470 --------------------------------------------------------------------------------Name : python34 Product : Fedora 30 Version : 3.4.10 Release : 3.fc30 URL : https://www.python.org/ Summary : Version 3.4 of the Python programming language Description : Python 3.4 package for developers. This package exists to allow developers to test their code against an older version of Python. This is not a full Python stack and if you wish to run your applications with Python 3.4, see other distributions that support it, such as CentOS or RHEL with Software Collections. --------------------------------------------------------------------------------Update Information: Fix CVE-2019-16056 (rhbz#1750457) ---- Fix CVE-2019-10160 (rhbz#1718867) --------------------------------------------------------------------------------ChangeLog: * Mon Sep 9 2019 Charalampos Stratakis - 3.4.10-3 - Fix CVE-2019-16056 (rhbz#1750457) * Thu Sep 5 2019 Charalampos Stratakis - 3.4.10-2 - Fix CVE-2019-10160 (rhbz#1718867) --------------------------------------------------------------------------------References: [ 1 ] Bug #1750457 - CVE-2019-16056 python34: python: email.utils.parseaddr wrongly parses email addresses [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1750457 [ 2 ] Bug #1718867 - CVE-2019-10160 python34: python: regression of CVE-2019-9636 due to functional fix to allow port numbers in netloc [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1718867 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-2b1f72899a' at the command line. For more information, refer to thednf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . To troubleshoot Python issues in Fedora 30, ensure you install the latest security patches for python34 and manage your packages accordingly. Python Update,Fedora Security,Vulnerability Fix,Python 3.4,Update Notification. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 18, 2019 Critical Fedora
89

Fedora 27: python34 Critical Integer Overflow - HEAP Overflow Fix

Security fix for CVE-2017-1000158. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-a41f6a8078 2017-12-19 18:22:41.464505 --------------------------------------------------------------------------------Name : python34 Product : Fedora 27 Version : 3.4.7 Release : 2.fc27 URL : https://www.python.org/ Summary : Version 3.4 of the Python programming language Description : Python 3.4 package for developers. This package exists to allow developers to test their code against an older version of Python. This is not a full Python stack and if you wish to run your applications with Python 3.4, see other distributions that support it, such as CentOS or RHEL with Software Collections. --------------------------------------------------------------------------------Update Information: Security fix for CVE-2017-1000158 --------------------------------------------------------------------------------References: [ 1 ] Bug #1519595 - CVE-2017-1000158 python: Integer overflow in PyString_DecodeEscape results in heap-base buffer overflow https://bugzilla.redhat.com/show_bug.cgi?id=1519595 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade python34' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . This Ubuntu security patch resolves an integerunderflow causing a stack-based buffer overflow issue in python3.8.. Fedora Security Update, Python 3.4, Integer Overflow, Buffer Overflow. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Dec 19, 2017 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here