ALSA-2024:10953

Source
https://errata.almalinux.org/8/ALSA-2024-10953.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:10953.json
JSON Data
https://api.osv.dev/v1/vulns/ALSA-2024:10953
Related
Published
2024-12-11T00:00:00Z
Modified
2024-12-16T14:49:29Z
Summary
Important: python36:3.6 security update
Details

Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.

Security Fix(es):

  • virtualenv: potential command injection via virtual environment activation scripts (CVE-2024-53899)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References

Affected packages

AlmaLinux:8 / python-nose-docs

Package

Name
python-nose-docs
Purl
pkg:rpm/almalinux/python-nose-docs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.3.7-31.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python-pymongo-doc

Package

Name
python-pymongo-doc
Purl
pkg:rpm/almalinux/python-pymongo-doc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.7.0-1.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python-sqlalchemy-doc

Package

Name
python-sqlalchemy-doc
Purl
pkg:rpm/almalinux/python-sqlalchemy-doc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.3.2-3.module_el8.10.0+3769+3838165b

AlmaLinux:8 / python-virtualenv-doc

Package

Name
python-virtualenv-doc
Purl
pkg:rpm/almalinux/python-virtualenv-doc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
15.1.0-23.module_el8.10.0+3937+b6a3652f

AlmaLinux:8 / python3-PyMySQL

Package

Name
python3-PyMySQL
Purl
pkg:rpm/almalinux/python3-PyMySQL

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.10.1-2.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python3-bson

Package

Name
python3-bson
Purl
pkg:rpm/almalinux/python3-bson

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.7.0-1.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python3-distro

Package

Name
python3-distro
Purl
pkg:rpm/almalinux/python3-distro

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.4.0-2.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python3-docs

Package

Name
python3-docs
Purl
pkg:rpm/almalinux/python3-docs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.6.7-2.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python3-docutils

Package

Name
python3-docutils
Purl
pkg:rpm/almalinux/python3-docutils

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.14-12.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python3-nose

Package

Name
python3-nose
Purl
pkg:rpm/almalinux/python3-nose

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.3.7-31.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python3-pygments

Package

Name
python3-pygments
Purl
pkg:rpm/almalinux/python3-pygments

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.2.0-22.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python3-pymongo

Package

Name
python3-pymongo
Purl
pkg:rpm/almalinux/python3-pymongo

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.7.0-1.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python3-pymongo-gridfs

Package

Name
python3-pymongo-gridfs
Purl
pkg:rpm/almalinux/python3-pymongo-gridfs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.7.0-1.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python3-scipy

Package

Name
python3-scipy
Purl
pkg:rpm/almalinux/python3-scipy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.0.0-21.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python3-sqlalchemy

Package

Name
python3-sqlalchemy
Purl
pkg:rpm/almalinux/python3-sqlalchemy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.3.2-3.module_el8.10.0+3769+3838165b

AlmaLinux:8 / python3-virtualenv

Package

Name
python3-virtualenv
Purl
pkg:rpm/almalinux/python3-virtualenv

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
15.1.0-23.module_el8.10.0+3937+b6a3652f

AlmaLinux:8 / python3-wheel

Package

Name
python3-wheel
Purl
pkg:rpm/almalinux/python3-wheel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:0.31.1-3.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python3-wheel-wheel

Package

Name
python3-wheel-wheel
Purl
pkg:rpm/almalinux/python3-wheel-wheel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:0.31.1-3.module_el8.9.0+3700+efebe9fd

AlmaLinux:8 / python36

Package

Name
python36
Purl
pkg:rpm/almalinux/python36

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.6.8-39.module_el8.10.0+3769+3838165b

AlmaLinux:8 / python36-debug

Package

Name
python36-debug
Purl
pkg:rpm/almalinux/python36-debug

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.6.8-39.module_el8.10.0+3769+3838165b

AlmaLinux:8 / python36-devel

Package

Name
python36-devel
Purl
pkg:rpm/almalinux/python36-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.6.8-39.module_el8.10.0+3769+3838165b

AlmaLinux:8 / python36-rpm-macros

Package

Name
python36-rpm-macros
Purl
pkg:rpm/almalinux/python36-rpm-macros

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.6.8-39.module_el8.10.0+3769+3838165b