ELSA-2020-4433

ELSA-2020-4433 - python3 security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2020-11-10

Description


[3.6.8-31.0.1]
- Add Oracle Linux distribution in platform.py [Orabug: 20812544]

[3.6.8-31]
- Avoid infinite loop when reading specially crafted TAR files (CVE-2019-20907)
Resolves: rhbz#1856481
- Resolve hash collisions for Pv4Interface and IPv6Interface (CVE-2020-14422)
Resolves: rhbz#1854926

[3.6.8-30]
- Remove downstream 00178-dont-duplicate-flags-in-sysconfig.patch which
introduced a bug on distutils.sysconfig.get_config_var('LIBPL')
(rhbz#1851090).

[3.6.8-29]
- Fix python3-config --configdir (rhbz#1772992).

[3.6.8-28]
- Security fix for CVE-2020-8492
Resolves: rhbz#1810618

[3.6.8-27]
- Add a sentinel value on the Hmac_members table of the fips compliant hmac module
Resolves: rhbz#1800512

[3.6.8-26]
- Skip test_startup_imports from test_site if we have a .pth file in sys.path
Resolves: rhbz#1814392

[3.6.8-25]
- Security fix for CVE-2019-16935
Resolves: rhbz#1798001

[3.6.8-24]
- Build Python with -fno-semantic-interposition for better performance
- https://fedoraproject.org/wiki/Changes/PythonNoSemanticInterpositionSpeedup
- Also fix test_gdb failures with Link Time Optimizations
Resolves: rhbz#1724996


Related CVEs


CVE-2020-14422
CVE-2019-20907
CVE-2020-8492
CVE-2019-16935

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) python3-3.6.8-31.0.1.el8.src.rpm50dc68d042a6138ff78bc1510e0b612c-
platform-python-3.6.8-31.0.1.el8.aarch64.rpm494f6806a630e6569b6f96b6fa255f5d-
platform-python-debug-3.6.8-31.0.1.el8.aarch64.rpm3b1951c662e8c52d63dcdce2f47dbb57-
platform-python-devel-3.6.8-31.0.1.el8.aarch64.rpm26ba4eae000a3c6c639da5dc40b85121-
python3-idle-3.6.8-31.0.1.el8.aarch64.rpme1a28a1f8dc29e8b19abc7844b8834cc-
python3-libs-3.6.8-31.0.1.el8.aarch64.rpmd09b59f687f12cb1a96649a3cd9f05ad-
python3-test-3.6.8-31.0.1.el8.aarch64.rpma1870c5063597f621eb4a59bf658e446-
python3-tkinter-3.6.8-31.0.1.el8.aarch64.rpmc219a4a52fa472eb2f414a2d3c839fcc-
Oracle Linux 8 (x86_64) python3-3.6.8-31.0.1.el8.src.rpm50dc68d042a6138ff78bc1510e0b612c-
platform-python-3.6.8-31.0.1.el8.i686.rpmfaa90cca3953b35f21f6a3a6e686e1d9-
platform-python-3.6.8-31.0.1.el8.x86_64.rpmb950effb6bcdeaa6e1cfdf07c2550c4d-
platform-python-debug-3.6.8-31.0.1.el8.i686.rpme2366d9e5073d4094589c40a557dff49-
platform-python-debug-3.6.8-31.0.1.el8.x86_64.rpma1082a62ea1c6156f00466798456e638-
platform-python-devel-3.6.8-31.0.1.el8.i686.rpm3357ab7d1bbcd33cda7cd1aa9839c392-
platform-python-devel-3.6.8-31.0.1.el8.x86_64.rpm14a4eb806a3928255afde08fa342fbe6-
python3-idle-3.6.8-31.0.1.el8.i686.rpma5709dbc88668d4655b4286654ff1478-
python3-idle-3.6.8-31.0.1.el8.x86_64.rpm9943380e8c6a86ec163e78a45d196736-
python3-libs-3.6.8-31.0.1.el8.i686.rpmf37bb4f4fcc1499ae71d42e1c98f59f7-
python3-libs-3.6.8-31.0.1.el8.x86_64.rpm8a749c5066c58f98b4372154b680cf49-
python3-test-3.6.8-31.0.1.el8.i686.rpm56b1ee6e6eaa44e3c85b65202569856d-
python3-test-3.6.8-31.0.1.el8.x86_64.rpm3057dca700e15259b4eda843c9ad9f0b-
python3-tkinter-3.6.8-31.0.1.el8.i686.rpm82825f53fc35a2b84be27dabb39e4106-
python3-tkinter-3.6.8-31.0.1.el8.x86_64.rpm3d5236d4c414367d4f6aeb8175cf7917-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete