跳转到帖子

Alma Linux: CVE-2022-40897: Moderate: python-setuptools security update (Multiple Advisories)

recommended_posts

发布于
  • Members

Alma Linux: CVE-2022-40897: Moderate: python-setuptools security update (Multiple Advisories)

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:C)
Published
12/23/2022
Created
02/22/2023
Added
02/22/2023
Modified
01/28/2025

Description

Python Packaging Authority (PyPA) setuptools before 65.5.1 allows remote attackers to cause a denial of service via HTML in a crafted package or custom PackageIndex page. There is a Regular Expression Denial of Service (ReDoS) in package_index.py.

Solution(s)

  • alma-upgrade-babel
  • alma-upgrade-platform-python-setuptools
  • alma-upgrade-python-nose-docs
  • alma-upgrade-python-psycopg2-doc
  • alma-upgrade-python-sqlalchemy-doc
  • alma-upgrade-python2
  • alma-upgrade-python2-attrs
  • alma-upgrade-python2-babel
  • alma-upgrade-python2-backports
  • alma-upgrade-python2-backports-ssl_match_hostname
  • alma-upgrade-python2-bson
  • alma-upgrade-python2-chardet
  • alma-upgrade-python2-coverage
  • alma-upgrade-python2-cython
  • alma-upgrade-python2-debug
  • alma-upgrade-python2-devel
  • alma-upgrade-python2-dns
  • alma-upgrade-python2-docs
  • alma-upgrade-python2-docs-info
  • alma-upgrade-python2-docutils
  • alma-upgrade-python2-funcsigs
  • alma-upgrade-python2-idna
  • alma-upgrade-python2-ipaddress
  • alma-upgrade-python2-jinja2
  • alma-upgrade-python2-libs
  • alma-upgrade-python2-lxml
  • alma-upgrade-python2-markupsafe
  • alma-upgrade-python2-mock
  • alma-upgrade-python2-nose
  • alma-upgrade-python2-numpy
  • alma-upgrade-python2-numpy-doc
  • alma-upgrade-python2-numpy-f2py
  • alma-upgrade-python2-pip
  • alma-upgrade-python2-pip-wheel
  • alma-upgrade-python2-pluggy
  • alma-upgrade-python2-psycopg2
  • alma-upgrade-python2-psycopg2-debug
  • alma-upgrade-python2-psycopg2-tests
  • alma-upgrade-python2-py
  • alma-upgrade-python2-pygments
  • alma-upgrade-python2-pymongo
  • alma-upgrade-python2-pymongo-gridfs
  • alma-upgrade-python2-pymysql
  • alma-upgrade-python2-pysocks
  • alma-upgrade-python2-pytest
  • alma-upgrade-python2-pytest-mock
  • alma-upgrade-python2-pytz
  • alma-upgrade-python2-pyyaml
  • alma-upgrade-python2-requests
  • alma-upgrade-python2-rpm-macros
  • alma-upgrade-python2-scipy
  • alma-upgrade-python2-setuptools
  • alma-upgrade-python2-setuptools-wheel
  • alma-upgrade-python2-setuptools_scm
  • alma-upgrade-python2-six
  • alma-upgrade-python2-sqlalchemy
  • alma-upgrade-python2-test
  • alma-upgrade-python2-tkinter
  • alma-upgrade-python2-tools
  • alma-upgrade-python2-urllib3
  • alma-upgrade-python2-virtualenv
  • alma-upgrade-python2-wheel
  • alma-upgrade-python2-wheel-wheel
  • alma-upgrade-python3-setuptools
  • alma-upgrade-python3-setuptools-wheel
  • alma-upgrade-python39
  • alma-upgrade-python39-attrs
  • alma-upgrade-python39-cffi
  • alma-upgrade-python39-chardet
  • alma-upgrade-python39-cryptography
  • alma-upgrade-python39-cython
  • alma-upgrade-python39-debug
  • alma-upgrade-python39-devel
  • alma-upgrade-python39-idle
  • alma-upgrade-python39-idna
  • alma-upgrade-python39-iniconfig
  • alma-upgrade-python39-libs
  • alma-upgrade-python39-lxml
  • alma-upgrade-python39-mod_wsgi
  • alma-upgrade-python39-more-itertools
  • alma-upgrade-python39-numpy
  • alma-upgrade-python39-numpy-doc
  • alma-upgrade-python39-numpy-f2py
  • alma-upgrade-python39-packaging
  • alma-upgrade-python39-pip
  • alma-upgrade-python39-pip-wheel
  • alma-upgrade-python39-pluggy
  • alma-upgrade-python39-ply
  • alma-upgrade-python39-psutil
  • alma-upgrade-python39-psycopg2
  • alma-upgrade-python39-psycopg2-doc
  • alma-upgrade-python39-psycopg2-tests
  • alma-upgrade-python39-py
  • alma-upgrade-python39-pybind11
  • alma-upgrade-python39-pybind11-devel
  • alma-upgrade-python39-pycparser
  • alma-upgrade-python39-pymysql
  • alma-upgrade-python39-pyparsing
  • alma-upgrade-python39-pysocks
  • alma-upgrade-python39-pytest
  • alma-upgrade-python39-pyyaml
  • alma-upgrade-python39-requests
  • alma-upgrade-python39-rpm-macros
  • alma-upgrade-python39-scipy
  • alma-upgrade-python39-setuptools
  • alma-upgrade-python39-setuptools-wheel
  • alma-upgrade-python39-six
  • alma-upgrade-python39-test
  • alma-upgrade-python39-tkinter
  • alma-upgrade-python39-toml
  • alma-upgrade-python39-urllib3
  • alma-upgrade-python39-wcwidth
  • alma-upgrade-python39-wheel
  • alma-upgrade-python39-wheel-wheel

References

  • https://attackerkb.com/topics/cve-2022-40897
  • CVE - 2022-40897
  • https://errata.almalinux.org/8/ALSA-2023-0835.html
  • https://errata.almalinux.org/8/ALSA-2024-2985.html
  • https://errata.almalinux.org/8/ALSA-2024-2987.html
  • https://errata.almalinux.org/9/ALSA-2023-0952.html
  • 查看数 697
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。

游客
回帖…