Oval Definition:oval:org.opensuse.security:def:87336
Revision Date:2020-03-24Version:1
Title:Security update for python36 (Moderate)
Description:

This update for python36 fixes the following issues:

Security issues fixed:

- CVE-2019-18348: Fixed a CRLF injection via the host part of the url passed to urlopen(). Now an InvalidURL exception is raised (bsc#1155094). - CVE-2019-9674: Improved the documentation to reflect the dangers of zip-bombs (bsc#1162825). - CVE-2020-8492: Fixed a regular expression in urllib that was prone to denial of service via HTTP (bsc#1162367).

Non-security issue fixed:

- If the locale is 'C', coerce it to C.UTF-8 (bsc#1162423). - Python was updated to 3.6.10 (jsc#SLE-9426, jsc#SLE-9427, bsc#1159035).
Family:unixClass:patch
Status:Reference(s):1027282
1029377
1029902
1040164
1042670
1049186
1050653
1070738
1070853
1077230
1079761
1081750
1083507
1086001
1088004
1088009
1088573
1094814
1107030
1109663
1109847
1120644
1122191
1129346
1130840
1133452
1137942
1138459
1141853
1149121
1149792
1149955
1151490
1153238
1155094
1159035
1159622
1162367
1162423
1162825
637176
658604
673071
709442
743787
747125
751718
754447
754677
787526
809831
831629
834601
867887
871152
885662
885882
917607
935856
942751
951166
983582
984751
985177
985348
989523
CVE-2011-3389
CVE-2011-4944
CVE-2012-0845
CVE-2012-1150
CVE-2013-1752
CVE-2013-4238
CVE-2014-2667
CVE-2014-4650
CVE-2016-0772
CVE-2016-1000110
CVE-2016-5636
CVE-2016-5699
CVE-2017-18207
CVE-2018-1000802
CVE-2018-1060
CVE-2018-1061
CVE-2018-14647
CVE-2018-20406
CVE-2018-20852
CVE-2019-10160
CVE-2019-15903
CVE-2019-16056
CVE-2019-16935
CVE-2019-18348
CVE-2019-5010
CVE-2019-9636
CVE-2019-9674
CVE-2019-9947
CVE-2020-8492
Platform(s):SUSE Linux Enterprise Server 12 SP3-TERADATA
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libpython3_6m1_0-3.6.8-6.14.1 is installed
  • OR python36-3.6.8-6.14.1 is installed
  • OR python36-base-3.6.8-6.14.1 is installed
  • OR python36-curses-3.6.8-6.14.1 is installed
  • OR python36-dbm-3.6.8-6.14.1 is installed
  • OR python36-devel-3.6.8-6.14.1 is installed
  • OR python36-doc-3.6.8-6.14.1 is installed
  • OR python36-testsuite-3.6.8-6.14.1 is installed
  • OR python36-tk-3.6.8-6.14.1 is installed
  • OR python36-tools-3.6.8-6.14.1 is installed
  • BACK