[ubuntu/focal-updates] python3.8 3.8.10-0ubuntu1~20.04.10 (Accepted)

Ubuntu Archive Robot ubuntu-archive-robot at lists.canonical.com
Tue Jul 9 15:00:14 UTC 2024


python3.8 (3.8.10-0ubuntu1~20.04.10) focal-security; urgency=medium

  * SECURITY UPDATE: incorrect permission assignment
    - debian/patches/CVE-2023-6597.patch: fix symlink bug in cleanup.
    - CVE-2023-6597
  * SECURITY UPDATE: zipbomb DoS attack
    - debian/patches/CVE-2024-0450.patch: raise BadZipFile when trying
      to read an entry that overlaps with other entry or central
      directory.
    - CVE-2024-0450

Date: 2024-04-12 15:53:16.784917+00:00
Changed-By: Allen Huang <allen.huang at canonical.com>
Signed-By: Ubuntu Archive Robot <ubuntu-archive-robot at lists.canonical.com>
https://launchpad.net/ubuntu/+source/python3.8/3.8.10-0ubuntu1~20.04.10
-------------- next part --------------
Sorry, changesfile not available.


More information about the Focal-changes mailing list