RHSA-2024:9986: Moderate: RHOSP 17.1.4 (python-sqlparse) security update
Moderate: RHOSP 17.1.4 (python-sqlparse) security update
Other sources
sqlparse is a tool for parsing SQL stringsSecurity Fix(es): parsing heavily nested list leads to denial of service (CVE-2024-4340) For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVEpage listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:9986?
The severity of RHSA-2024:9986 is classified as moderate.
What issues does RHSA-2024:9986 address?
RHSA-2024:9986 addresses a denial of service vulnerability in python-sqlparse caused by parsing heavily nested lists.
How do I fix RHSA-2024:9986?
To fix RHSA-2024:9986, update the python-sqlparse and python3-sqlparse packages to version 0.4.1-2.el8.
Which software is affected by RHSA-2024:9986?
RHSA-2024:9986 affects the Red Hat OpenStack 17.1.4 and the python-sqlparse packages.
Is CVE-2024-4340 related to RHSA-2024:9986?
Yes, CVE-2024-4340 is the specific vulnerability referenced in RHSA-2024:9986 that leads to denial of service.