USN-4668-1 fixed vulnerabilities in python-apt. The update caused a regression when using certain APIs with a file handle. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Kevin Backhouse discovered that python-apt incorrectly handled resources. A local attacker could possibly use this issue to cause python-apt to consume resources, leading to a denial of service.
{
"binaries": [
{
"binary_name": "python-apt",
"binary_version": "1.1.0~beta1ubuntu0.16.04.11"
},
{
"binary_name": "python-apt-common",
"binary_version": "1.1.0~beta1ubuntu0.16.04.11"
},
{
"binary_name": "python3-apt",
"binary_version": "1.1.0~beta1ubuntu0.16.04.11"
}
],
"availability": "No subscription required"
}
{
"binaries": [
{
"binary_name": "python-apt",
"binary_version": "2.0.0ubuntu0.20.04.3"
},
{
"binary_name": "python-apt-common",
"binary_version": "2.0.0ubuntu0.20.04.3"
},
{
"binary_name": "python3-apt",
"binary_version": "2.0.0ubuntu0.20.04.3"
}
],
"availability": "No subscription required"
}