First published: Tue Sep 13 2022(Updated: )
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. <br>Security Fix(es):<br><li> python(mailcap): findmatch() function does not sanitise the second argument (CVE-2015-20107)</li> <li> python: urllib.parse does not sanitize URLs containing ASCII newline and tabs (CVE-2022-0391)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/python3 | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/platform-python | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/platform-python | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/platform-python-debug | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/platform-python-debug | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/platform-python-devel | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/platform-python-devel | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-debuginfo | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-debuginfo | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-debugsource | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-debugsource | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-idle | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-idle | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-libs | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-libs | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-test | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-test | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-tkinter | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-tkinter | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/platform-python | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/platform-python-debug | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/platform-python-devel | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-debuginfo | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-debugsource | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-idle | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-libs | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-test | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/python3-tkinter | <3.6.8-47.el8_6 | 3.6.8-47.el8_6 |
redhat/platform-python | <3.6.8-47.el8_6.aa | 3.6.8-47.el8_6.aa |
redhat/platform-python-debug | <3.6.8-47.el8_6.aa | 3.6.8-47.el8_6.aa |
redhat/platform-python-devel | <3.6.8-47.el8_6.aa | 3.6.8-47.el8_6.aa |
redhat/python3-debuginfo | <3.6.8-47.el8_6.aa | 3.6.8-47.el8_6.aa |
redhat/python3-debugsource | <3.6.8-47.el8_6.aa | 3.6.8-47.el8_6.aa |
redhat/python3-idle | <3.6.8-47.el8_6.aa | 3.6.8-47.el8_6.aa |
redhat/python3-libs | <3.6.8-47.el8_6.aa | 3.6.8-47.el8_6.aa |
redhat/python3-test | <3.6.8-47.el8_6.aa | 3.6.8-47.el8_6.aa |
redhat/python3-tkinter | <3.6.8-47.el8_6.aa | 3.6.8-47.el8_6.aa |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2022:6457 is classified as important.
To fix RHSA-2022:6457, update your affected Python packages to version 3.6.8-47.el8_6 or later.
Affected packages in RHSA-2022:6457 include python3, platform-python, and associated libraries and development packages.
Yes, RHSA-2022:6457 specifically addresses vulnerabilities in Python for Red Hat Enterprise Linux 8.
It is highly recommended to upgrade to the patched versions of the affected Python packages as soon as possible.