ELSA-2023-3781 Important: Oracle Linux 8 python38:3.8 and python38-devel:3.8 security update
Oracle Linux Security Advisory ELSA-2023-3781
http://linux.oracle.com/errata/ELSA-2023-3781.html
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
x86_64:
python38-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.x86_64.rpm
python38-asn1crypto-1.2.0-3.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-babel-2.7.0-11.module+el8.5.0+20371+4f24d723.noarch.rpm
python38-cffi-1.13.2-3.module+el8.4.0+20068+32a535e2.x86_64.rpm
python38-chardet-3.0.4-19.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-cryptography-2.8-3.module+el8.4.0+20068+32a535e2.x86_64.rpm
python38-Cython-0.29.14-4.module+el8.4.0+20068+32a535e2.x86_64.rpm
python38-debug-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.x86_64.rpm
python38-devel-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.x86_64.rpm
python38-idle-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.x86_64.rpm
python38-idna-2.8-6.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-jinja2-2.11.3-1.module+el8.7.0+20792+22659047.noarch.rpm
python38-libs-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.x86_64.rpm
python38-lxml-4.4.1-7.module+el8.6.0+20556+9910889d.x86_64.rpm
python38-markupsafe-1.1.1-6.module+el8.4.0+20068+32a535e2.x86_64.rpm
python38-mod_wsgi-4.6.8-4.module+el8.7.0+20869+e1465161.x86_64.rpm
python38-numpy-1.17.3-6.module+el8.5.0+20371+4f24d723.x86_64.rpm
python38-numpy-doc-1.17.3-6.module+el8.5.0+20371+4f24d723.noarch.rpm
python38-numpy-f2py-1.17.3-6.module+el8.5.0+20371+4f24d723.x86_64.rpm
python38-pip-19.3.1-6.module+el8.7.0+20792+22659047.noarch.rpm
python38-pip-wheel-19.3.1-6.module+el8.7.0+20792+22659047.noarch.rpm
python38-ply-3.11-10.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-psutil-5.6.4-4.module+el8.5.0+20371+4f24d723.x86_64.rpm
python38-psycopg2-2.8.4-4.module+el8.4.0+20068+32a535e2.x86_64.rpm
python38-psycopg2-doc-2.8.4-4.module+el8.4.0+20068+32a535e2.x86_64.rpm
python38-psycopg2-tests-2.8.4-4.module+el8.4.0+20068+32a535e2.x86_64.rpm
python38-pycparser-2.19-3.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-PyMySQL-0.10.1-1.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-pysocks-1.7.1-4.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-pytz-2019.3-3.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-pyyaml-5.4.1-1.module+el8.5.0+20371+4f24d723.x86_64.rpm
python38-requests-2.22.0-9.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-rpm-macros-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.noarch.rpm
python38-scipy-1.3.1-4.module+el8.4.0+20068+32a535e2.x86_64.rpm
python38-setuptools-41.6.0-5.module+el8.5.0+20371+4f24d723.noarch.rpm
python38-setuptools-wheel-41.6.0-5.module+el8.5.0+20371+4f24d723.noarch.rpm
python38-six-1.12.0-10.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-test-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.x86_64.rpm
python38-tkinter-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.x86_64.rpm
python38-urllib3-1.25.7-5.module+el8.5.0+20371+4f24d723.noarch.rpm
python38-wheel-0.33.6-6.module+el8.5.0+20371+4f24d723.noarch.rpm
python38-wheel-wheel-0.33.6-6.module+el8.5.0+20371+4f24d723.noarch.rpm
aarch64:
python38-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.aarch64.rpm
python38-asn1crypto-1.2.0-3.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-babel-2.7.0-11.module+el8.5.0+20371+4f24d723.noarch.rpm
python38-cffi-1.13.2-3.module+el8.4.0+20068+32a535e2.aarch64.rpm
python38-chardet-3.0.4-19.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-cryptography-2.8-3.module+el8.4.0+20068+32a535e2.aarch64.rpm
python38-Cython-0.29.14-4.module+el8.4.0+20068+32a535e2.aarch64.rpm
python38-debug-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.aarch64.rpm
python38-devel-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.aarch64.rpm
python38-idle-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.aarch64.rpm
python38-idna-2.8-6.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-jinja2-2.11.3-1.module+el8.7.0+20792+22659047.noarch.rpm
python38-libs-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.aarch64.rpm
python38-lxml-4.4.1-7.module+el8.6.0+20556+9910889d.aarch64.rpm
python38-markupsafe-1.1.1-6.module+el8.4.0+20068+32a535e2.aarch64.rpm
python38-mod_wsgi-4.6.8-4.module+el8.7.0+20869+e1465161.aarch64.rpm
python38-numpy-1.17.3-6.module+el8.5.0+20371+4f24d723.aarch64.rpm
python38-numpy-doc-1.17.3-6.module+el8.5.0+20371+4f24d723.noarch.rpm
python38-numpy-f2py-1.17.3-6.module+el8.5.0+20371+4f24d723.aarch64.rpm
python38-pip-19.3.1-6.module+el8.7.0+20792+22659047.noarch.rpm
python38-pip-wheel-19.3.1-6.module+el8.7.0+20792+22659047.noarch.rpm
python38-ply-3.11-10.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-psutil-5.6.4-4.module+el8.5.0+20371+4f24d723.aarch64.rpm
python38-psycopg2-2.8.4-4.module+el8.4.0+20068+32a535e2.aarch64.rpm
python38-psycopg2-doc-2.8.4-4.module+el8.4.0+20068+32a535e2.aarch64.rpm
python38-psycopg2-tests-2.8.4-4.module+el8.4.0+20068+32a535e2.aarch64.rpm
python38-pycparser-2.19-3.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-PyMySQL-0.10.1-1.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-pysocks-1.7.1-4.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-pytz-2019.3-3.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-pyyaml-5.4.1-1.module+el8.5.0+20371+4f24d723.aarch64.rpm
python38-requests-2.22.0-9.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-rpm-macros-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.noarch.rpm
python38-scipy-1.3.1-4.module+el8.4.0+20068+32a535e2.aarch64.rpm
python38-setuptools-41.6.0-5.module+el8.5.0+20371+4f24d723.noarch.rpm
python38-setuptools-wheel-41.6.0-5.module+el8.5.0+20371+4f24d723.noarch.rpm
python38-six-1.12.0-10.module+el8.4.0+20068+32a535e2.noarch.rpm
python38-test-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.aarch64.rpm
python38-tkinter-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.aarch64.rpm
python38-urllib3-1.25.7-5.module+el8.5.0+20371+4f24d723.noarch.rpm
python38-wheel-0.33.6-6.module+el8.5.0+20371+4f24d723.noarch.rpm
python38-wheel-wheel-0.33.6-6.module+el8.5.0+20371+4f24d723.noarch.rpm
SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates//babel-2.7.0-11.module+el8.5.0+20371+4f24d723.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//Cython-0.29.14-4.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//mod_wsgi-4.6.8-4.module+el8.7.0+20869+e1465161.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//numpy-1.17.3-6.module+el8.5.0+20371+4f24d723.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python38-3.8.16-1.module+el8.8.0+21120+5d2e4734.1.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python3x-pip-19.3.1-6.module+el8.7.0+20792+22659047.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python3x-setuptools-41.6.0-5.module+el8.5.0+20371+4f24d723.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python3x-six-1.12.0-10.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-asn1crypto-1.2.0-3.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-cffi-1.13.2-3.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-chardet-3.0.4-19.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-cryptography-2.8-3.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-idna-2.8-6.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-jinja2-2.11.3-1.module+el8.7.0+20792+22659047.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-lxml-4.4.1-7.module+el8.6.0+20556+9910889d.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-markupsafe-1.1.1-6.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-ply-3.11-10.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-psutil-5.6.4-4.module+el8.5.0+20371+4f24d723.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-psycopg2-2.8.4-4.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-pycparser-2.19-3.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-PyMySQL-0.10.1-1.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-pysocks-1.7.1-4.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-requests-2.22.0-9.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-urllib3-1.25.7-5.module+el8.5.0+20371+4f24d723.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//python-wheel-0.33.6-6.module+el8.5.0+20371+4f24d723.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//pytz-2019.3-3.module+el8.4.0+20068+32a535e2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//PyYAML-5.4.1-1.module+el8.5.0+20371+4f24d723.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates//scipy-1.3.1-4.module+el8.4.0+20068+32a535e2.src.rpm
Related CVEs:
CVE-2023-24329
Description of changes:
babel
[2.7.0-11]
- Fix CVE-2021-20095
Resolves: rhbz#1955615
Cython
[0.29.14-4]
- Exclude unsupported i686 arch
mod_wsgi
[4.6.8-4]
- Core dumped upon file upload >= 1GB
Resolves: rhbz#2125171
numpy
[1.17.3-6]
- Adjusted the postun scriptlets to enable upgrading to RHEL 9
- Resolves: rhbz#1933055
python38
[3.8.16-1.1]
- Fix CVE-2023-24329
python3x-pip
[19.3.1-6]
- Backport patch to fix infinite recursion with pip wheel with $TMPDIR in $PWD
- Resolves: rhbz#2090006
python3x-setuptools
[41.6.0-5]
- Adjusted the postun scriptlets to enable upgrading to RHEL 9
- Resolves: rhbz#1933055
python3x-six
[1.12.0-10]
- Rebuild from a new component name
python-asn1crypto
python-cffi
[1.13.2-3]
- Exclude unsupported i686 arch
python-chardet
python-cryptography
[2.8-3]
- Exclude unsupported i686 arch
python-idna
[2.8-6]
- Exclude unsupported i686 arch
python-jinja2
[2.11.3-1]
- Update to 2.11.3.
- Fix URL.
- Remove patch that is included in this release.
Resolves: rhbz#2086141.
python-lxml
[4.4.1-7]
- Security fix for CVE-2021-43818
Resolves: rhbz#2032569
python-markupsafe
[1.1.1-6]
- Exclude unsupported i686 arch
python-ply
python-psutil
[5.6.4-4]
- Security fix for CVE-2019-18874: double free because of refcount mishandling
Resolves: rhbz#1772014
python-psycopg2
[2.8.4-4]
- Exclude unsupported i686 arch
python-pycparser
[2.19-3]
- Exclude unsupported i686 arch
python-PyMySQL
[0.10.1-1]
- Rebase to 0.10 version to add support for MariaDB ed25519 authentication mechanism
python-pysocks
python-requests
[2.22.0-9]
- Exclude unsupported i686 arch
python-urllib3
[1.25.7-5]
- Fix for CVE-2021-33503 Catastrophic backtracking in URL authority parser
Resolves: rhbz#1968074
- Update RECENT_DATE dynamically
python-wheel
[0.33.6-6]
- Adjusted the postun scriptlets to enable upgrading to RHEL 9
- Resolves: rhbz#1933055
pytz
[2019.3-3]
- Exclude unsupported i686 arch
PyYAML
scipy
[1.3.1-4]
- Exclude unsupported i686 arch
A python38:3.8 and python38-devel:3.8 security update has been released for Oracle Linux 8.