RHSA-2023:7438: Important: Red Hat OpenStack Platform 17.1.1 (python-gevent) security update
gevent is a coroutine-based Python networking library that uses greenlet to provide a high-level synchronous API on top of libevent event loop.Security Fix(es): python-gevent: privilege escalation via a crafted script to the WSGIServer component (CVE-2023-41419) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Other sources
Important: Red Hat OpenStack Platform 17.1.1 (python-gevent) security update
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:7438?
The severity of RHSA-2023:7438 is high with a severity value of 7.
Which software is affected by RHSA-2023:7438?
Red Hat OpenStack Platform 17.1.1 and python-gevent, python-gevent-debugsource, python3-gevent, python3-gevent-debuginfo packages are affected.
How can I fix RHSA-2023:7438?
You can fix RHSA-2023:7438 by updating the affected software to version 21.1.2-2.el9.
Where can I find more information about RHSA-2023:7438?
You can find more information about RHSA-2023:7438 on the Red Hat Customer Portal and Bugzilla.
What is the source and package of RHSA-2023:7438?
RHSA-2023:7438 has the source 'redhat' and the package 'python-gevent'.