ELSA-2023-6615

ELSA-2023-6615 - python-cryptography security update

Type:SECURITY
Severity:MODERATE
Release Date:2023-11-11

Description


[36.0.1-4]
- Fix FTBFS caused by rsa_pkcs1_implicit_rejection OpenSSL feature, resolves rhbz#2203840

[36.0.1-3]
- Fix CVE-2023-23931: Don't allow update_into to mutate immutable objects, resolves rhbz#2172399
- Fix FTBFS due to failing test_load_invalid_ec_key_from_pem and test_decrypt_invalid_decrypt


Related CVEs


CVE-2023-23931

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) python-cryptography-36.0.1-4.el9.src.rpm49f20fd6a3d168deafb9aa5c2ef4cb73-ol9_aarch64_baseos_latest
python-cryptography-36.0.1-4.el9.src.rpm49f20fd6a3d168deafb9aa5c2ef4cb73-ol9_aarch64_u3_baseos_base
python3-cryptography-36.0.1-4.el9.aarch64.rpmec60ffb5007d9340ec0fec91c0d36a2a-ol9_aarch64_baseos_latest
python3-cryptography-36.0.1-4.el9.aarch64.rpmec60ffb5007d9340ec0fec91c0d36a2a-ol9_aarch64_u3_baseos_base
Oracle Linux 9 (x86_64) python-cryptography-36.0.1-4.el9.src.rpm49f20fd6a3d168deafb9aa5c2ef4cb73-ol9_x86_64_baseos_latest
python-cryptography-36.0.1-4.el9.src.rpm49f20fd6a3d168deafb9aa5c2ef4cb73-ol9_x86_64_u3_baseos_base
python3-cryptography-36.0.1-4.el9.x86_64.rpmf434e6419891d0a40b23ab5a4806d255-ol9_x86_64_baseos_latest
python3-cryptography-36.0.1-4.el9.x86_64.rpmf434e6419891d0a40b23ab5a4806d255-ol9_x86_64_u3_baseos_base



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete