CLSA-2024-1724260328

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2024-1724260328.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2024-1724260328
Upstream
Published
2024-08-21T17:12:11Z
Modified
2026-06-04T09:46:45.733566777Z
Summary
Fix CVE(s): CVE-2024-0450
Details
  • SECURITY UPDATE: exploit “quoted-overlap” zip-bombs with a high compression ratio
    • debian/patches/CVE-2024-0450.patch: Protect zipfile from "quoted-overlap" zipbomb
    • CVE-2024-0450
  • replace TLSv1 by TLSv1.2 since TLSv1 is not supported in the following tests:
    • Lib/test/testftplib.py
    • Lib/test/testhttplib.py
    • Lib/test/testpoplib.py
    • Lib/test/testssl.py
    • Lib/test/testurllib2localnet.py
References

Affected packages

TuxCare:Ubuntu:16.04
idle-python3.5

Package

Name
idle-python3.5
Purl
pkg:deb/tuxcare/idle-python3.5?distro=ubuntu-16.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.5.2-2ubuntu0~16.04.13+tuxcare.els14

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2024-1724260328.json"
libpython3.5

Package

Name
libpython3.5
Purl
pkg:deb/tuxcare/libpython3.5?distro=ubuntu-16.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.5.2-2ubuntu0~16.04.13+tuxcare.els14

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2024-1724260328.json"
libpython3.5-dev

Package

Name
libpython3.5-dev
Purl
pkg:deb/tuxcare/libpython3.5-dev?distro=ubuntu-16.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.5.2-2ubuntu0~16.04.13+tuxcare.els14

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2024-1724260328.json"
libpython3.5-minimal

Package

Name
libpython3.5-minimal
Purl
pkg:deb/tuxcare/libpython3.5-minimal?distro=ubuntu-16.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.5.2-2ubuntu0~16.04.13+tuxcare.els14

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2024-1724260328.json"
libpython3.5-stdlib

Package

Name
libpython3.5-stdlib
Purl
pkg:deb/tuxcare/libpython3.5-stdlib?distro=ubuntu-16.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.5.2-2ubuntu0~16.04.13+tuxcare.els14

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2024-1724260328.json"
libpython3.5-testsuite

Package

Name
libpython3.5-testsuite
Purl
pkg:deb/tuxcare/libpython3.5-testsuite?distro=ubuntu-16.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.5.2-2ubuntu0~16.04.13+tuxcare.els14

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2024-1724260328.json"
python3.5

Package

Name
python3.5
Purl
pkg:deb/tuxcare/python3.5?distro=ubuntu-16.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.5.2-2ubuntu0~16.04.13+tuxcare.els14

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2024-1724260328.json"
python3.5-dev

Package

Name
python3.5-dev
Purl
pkg:deb/tuxcare/python3.5-dev?distro=ubuntu-16.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.5.2-2ubuntu0~16.04.13+tuxcare.els14

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2024-1724260328.json"
python3.5-doc

Package

Name
python3.5-doc
Purl
pkg:deb/tuxcare/python3.5-doc?distro=ubuntu-16.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.5.2-2ubuntu0~16.04.13+tuxcare.els14

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2024-1724260328.json"
python3.5-examples

Package

Name
python3.5-examples
Purl
pkg:deb/tuxcare/python3.5-examples?distro=ubuntu-16.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.5.2-2ubuntu0~16.04.13+tuxcare.els14

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2024-1724260328.json"
python3.5-minimal

Package

Name
python3.5-minimal
Purl
pkg:deb/tuxcare/python3.5-minimal?distro=ubuntu-16.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.5.2-2ubuntu0~16.04.13+tuxcare.els14

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2024-1724260328.json"
python3.5-venv

Package

Name
python3.5-venv
Purl
pkg:deb/tuxcare/python3.5-venv?distro=ubuntu-16.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.5.2-2ubuntu0~16.04.13+tuxcare.els14

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2024-1724260328.json"