Skip to navigation

Security Advisory Moderate: python security update

Advisory: RHSA-2009:1177-1
Type: Security Advisory
Severity: Moderate
Issued on: 2009-07-27
Last updated on: 2009-07-27
Affected Products: Red Hat Desktop (v. 4)
Red Hat Enterprise Linux AS (v. 4)
Red Hat Enterprise Linux AS (v. 4.8.z)
Red Hat Enterprise Linux ES (v. 4)
Red Hat Enterprise Linux ES (v. 4.8.z)
Red Hat Enterprise Linux WS (v. 4)
CVEs (cve.mitre.org): CVE-2008-1679
CVE-2008-1721
CVE-2008-1887
CVE-2008-2315
CVE-2008-3142
CVE-2008-3143
CVE-2008-3144
CVE-2008-4864
CVE-2008-5031

Details

Updated python packages that fix multiple security issues are now available
for Red Hat Enterprise Linux 4.

This update has been rated as having moderate security impact by the Red
Hat Security Response Team.

Python is an interpreted, interactive, object-oriented programming
language.

When the assert() system call was disabled, an input sanitization flaw was
revealed in the Python string object implementation that led to a buffer
overflow. The missing check for negative size values meant the Python
memory allocator could allocate less memory than expected. This could
result in arbitrary code execution with the Python interpreter's
privileges. (CVE-2008-1887)

Multiple buffer and integer overflow flaws were found in the Python Unicode
string processing and in the Python Unicode and string object
implementations. An attacker could use these flaws to cause a denial of
service (Python application crash). (CVE-2008-3142, CVE-2008-5031)

Multiple integer overflow flaws were found in the Python imageop module. If
a Python application used the imageop module to process untrusted images,
it could cause the application to crash or, potentially, execute arbitrary
code with the Python interpreter's privileges. (CVE-2008-1679,
CVE-2008-4864)

Multiple integer underflow and overflow flaws were found in the Python
snprintf() wrapper implementation. An attacker could use these flaws to
cause a denial of service (memory corruption). (CVE-2008-3144)

Multiple integer overflow flaws were found in various Python modules. An
attacker could use these flaws to cause a denial of service (Python
application crash). (CVE-2008-2315, CVE-2008-3143)

An integer signedness error, leading to a buffer overflow, was found
in the Python zlib extension module. If a Python application requested
the negative byte count be flushed for a decompression stream, it could
cause the application to crash or, potentially, execute arbitrary code
with the Python interpreter's privileges. (CVE-2008-1721)

Red Hat would like to thank David Remahl of the Apple Product Security team
for responsibly reporting the CVE-2008-1679 and CVE-2008-2315 issues.

All Python users should upgrade to these updated packages, which contain
backported patches to correct these issues.


Solution

Before applying this update, make sure that all previously-released
errata relevant to your system have been applied.

This update is available via Red Hat Network. Details on how to use
the Red Hat Network to apply this update are available at
http://kbase.redhat.com/faq/docs/DOC-11259

Updated packages

Red Hat Desktop (v. 4)

SRPMS:
python-2.3.4-14.7.el4_8.2.src.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7c8395b5e0314978d931600a60c53d5e
 
IA-32:
python-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 960c8a20223b89f4a23895487adddb5c
python-devel-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7481651a04ff2a73d56ea254cbf339a8
python-docs-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7cada6b3cd6748490588e769a08510fc
python-tools-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 32ad2323ac2e6b572ce6bf90df66fd41
tkinter-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7e4afe805a5e0077e9f5791469bbbc3f
 
x86_64:
python-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 5865e3cbff92353e26041f06bce14246
python-devel-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 1ea4d113f01f60aef8f59fa3342f2192
python-docs-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 70aabd3cc03d6268f0134ad0eae32b9a
python-tools-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: a0fb8ab506357cef2a1ce7b45ffe57df
tkinter-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: e3c8fd9912a794ad2cfe51fba1d7c6ad
 
Red Hat Enterprise Linux AS (v. 4)

SRPMS:
python-2.3.4-14.7.el4_8.2.src.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7c8395b5e0314978d931600a60c53d5e
 
IA-32:
python-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 960c8a20223b89f4a23895487adddb5c
python-devel-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7481651a04ff2a73d56ea254cbf339a8
python-docs-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7cada6b3cd6748490588e769a08510fc
python-tools-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 32ad2323ac2e6b572ce6bf90df66fd41
tkinter-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7e4afe805a5e0077e9f5791469bbbc3f
 
IA-64:
python-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 87f95d98c1e3eb25d82f0d0d9c671ecd
python-devel-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 641db35397e0ebcc86bd1e4edb3978bf
python-docs-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 37d100cddcc57db9ddbc62043edde0fc
python-tools-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: e717150412cfd44de194ac89a0e2975d
tkinter-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 8e4491d4b63ea9ecf8964e544fcc977d
 
PPC:
python-2.3.4-14.7.el4_8.2.ppc.rpm
File outdated by:  RHSA-2011:0491
    MD5: 1430e035b3f9c100710fab865e703d2b
python-devel-2.3.4-14.7.el4_8.2.ppc.rpm
File outdated by:  RHSA-2011:0491
    MD5: ed4fc42dbbf245ce40937a82d200887a
python-docs-2.3.4-14.7.el4_8.2.ppc.rpm
File outdated by:  RHSA-2011:0491
    MD5: d33fd14fbf4308f33892977ee841590c
python-tools-2.3.4-14.7.el4_8.2.ppc.rpm
File outdated by:  RHSA-2011:0491
    MD5: bb854dab89b67a2457bad8100432ba35
tkinter-2.3.4-14.7.el4_8.2.ppc.rpm
File outdated by:  RHSA-2011:0491
    MD5: 35d7592dc9af082699ee042e05eaacbc
 
s390:
python-2.3.4-14.7.el4_8.2.s390.rpm
File outdated by:  RHSA-2011:0491
    MD5: c11f9c96c71fd38d4b73ffa63f845e36
python-devel-2.3.4-14.7.el4_8.2.s390.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7a921dfb3bc609c3a943f8b53f4ae4f8
python-docs-2.3.4-14.7.el4_8.2.s390.rpm
File outdated by:  RHSA-2011:0491
    MD5: 48e3be6e1a2e72058bf356b2d10adfd0
python-tools-2.3.4-14.7.el4_8.2.s390.rpm
File outdated by:  RHSA-2011:0491
    MD5: 45a54d077d149f13a778867a0013e46a
tkinter-2.3.4-14.7.el4_8.2.s390.rpm
File outdated by:  RHSA-2011:0491
    MD5: b3ecd4c4529346e19530c2462406d535
 
s390x:
python-2.3.4-14.7.el4_8.2.s390x.rpm
File outdated by:  RHSA-2011:0491
    MD5: 378049eb95adcdbdabbb87207828335c
python-devel-2.3.4-14.7.el4_8.2.s390x.rpm
File outdated by:  RHSA-2011:0491
    MD5: 6afe88abe56067bc420cfa76c601c501
python-docs-2.3.4-14.7.el4_8.2.s390x.rpm
File outdated by:  RHSA-2011:0491
    MD5: 62a4e7ae7c8b97175110f8c0b270c5d5
python-tools-2.3.4-14.7.el4_8.2.s390x.rpm
File outdated by:  RHSA-2011:0491
    MD5: 6798de925da53c328c57d6af7b9e375b
tkinter-2.3.4-14.7.el4_8.2.s390x.rpm
File outdated by:  RHSA-2011:0491
    MD5: 0d22470c28a89e021027bedfda6fcb60
 
x86_64:
python-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 5865e3cbff92353e26041f06bce14246
python-devel-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 1ea4d113f01f60aef8f59fa3342f2192
python-docs-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 70aabd3cc03d6268f0134ad0eae32b9a
python-tools-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: a0fb8ab506357cef2a1ce7b45ffe57df
tkinter-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: e3c8fd9912a794ad2cfe51fba1d7c6ad
 
Red Hat Enterprise Linux AS (v. 4.8.z)

SRPMS:
python-2.3.4-14.7.el4_8.2.src.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7c8395b5e0314978d931600a60c53d5e
 
IA-32:
python-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 960c8a20223b89f4a23895487adddb5c
python-devel-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7481651a04ff2a73d56ea254cbf339a8
python-docs-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7cada6b3cd6748490588e769a08510fc
python-tools-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 32ad2323ac2e6b572ce6bf90df66fd41
tkinter-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7e4afe805a5e0077e9f5791469bbbc3f
 
IA-64:
python-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 87f95d98c1e3eb25d82f0d0d9c671ecd
python-devel-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 641db35397e0ebcc86bd1e4edb3978bf
python-docs-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 37d100cddcc57db9ddbc62043edde0fc
python-tools-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: e717150412cfd44de194ac89a0e2975d
tkinter-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 8e4491d4b63ea9ecf8964e544fcc977d
 
PPC:
python-2.3.4-14.7.el4_8.2.ppc.rpm
File outdated by:  RHSA-2011:0491
    MD5: 1430e035b3f9c100710fab865e703d2b
python-devel-2.3.4-14.7.el4_8.2.ppc.rpm
File outdated by:  RHSA-2011:0491
    MD5: ed4fc42dbbf245ce40937a82d200887a
python-docs-2.3.4-14.7.el4_8.2.ppc.rpm
File outdated by:  RHSA-2011:0491
    MD5: d33fd14fbf4308f33892977ee841590c
python-tools-2.3.4-14.7.el4_8.2.ppc.rpm
File outdated by:  RHSA-2011:0491
    MD5: bb854dab89b67a2457bad8100432ba35
tkinter-2.3.4-14.7.el4_8.2.ppc.rpm
File outdated by:  RHSA-2011:0491
    MD5: 35d7592dc9af082699ee042e05eaacbc
 
s390:
python-2.3.4-14.7.el4_8.2.s390.rpm
File outdated by:  RHSA-2011:0491
    MD5: c11f9c96c71fd38d4b73ffa63f845e36
python-devel-2.3.4-14.7.el4_8.2.s390.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7a921dfb3bc609c3a943f8b53f4ae4f8
python-docs-2.3.4-14.7.el4_8.2.s390.rpm
File outdated by:  RHSA-2011:0491
    MD5: 48e3be6e1a2e72058bf356b2d10adfd0
python-tools-2.3.4-14.7.el4_8.2.s390.rpm
File outdated by:  RHSA-2011:0491
    MD5: 45a54d077d149f13a778867a0013e46a
tkinter-2.3.4-14.7.el4_8.2.s390.rpm
File outdated by:  RHSA-2011:0491
    MD5: b3ecd4c4529346e19530c2462406d535
 
s390x:
python-2.3.4-14.7.el4_8.2.s390x.rpm
File outdated by:  RHSA-2011:0491
    MD5: 378049eb95adcdbdabbb87207828335c
python-devel-2.3.4-14.7.el4_8.2.s390x.rpm
File outdated by:  RHSA-2011:0491
    MD5: 6afe88abe56067bc420cfa76c601c501
python-docs-2.3.4-14.7.el4_8.2.s390x.rpm
File outdated by:  RHSA-2011:0491
    MD5: 62a4e7ae7c8b97175110f8c0b270c5d5
python-tools-2.3.4-14.7.el4_8.2.s390x.rpm
File outdated by:  RHSA-2011:0491
    MD5: 6798de925da53c328c57d6af7b9e375b
tkinter-2.3.4-14.7.el4_8.2.s390x.rpm
File outdated by:  RHSA-2011:0491
    MD5: 0d22470c28a89e021027bedfda6fcb60
 
x86_64:
python-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 5865e3cbff92353e26041f06bce14246
python-devel-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 1ea4d113f01f60aef8f59fa3342f2192
python-docs-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 70aabd3cc03d6268f0134ad0eae32b9a
python-tools-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: a0fb8ab506357cef2a1ce7b45ffe57df
tkinter-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: e3c8fd9912a794ad2cfe51fba1d7c6ad
 
Red Hat Enterprise Linux ES (v. 4)

SRPMS:
python-2.3.4-14.7.el4_8.2.src.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7c8395b5e0314978d931600a60c53d5e
 
IA-32:
python-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 960c8a20223b89f4a23895487adddb5c
python-devel-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7481651a04ff2a73d56ea254cbf339a8
python-docs-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7cada6b3cd6748490588e769a08510fc
python-tools-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 32ad2323ac2e6b572ce6bf90df66fd41
tkinter-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7e4afe805a5e0077e9f5791469bbbc3f
 
IA-64:
python-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 87f95d98c1e3eb25d82f0d0d9c671ecd
python-devel-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 641db35397e0ebcc86bd1e4edb3978bf
python-docs-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 37d100cddcc57db9ddbc62043edde0fc
python-tools-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: e717150412cfd44de194ac89a0e2975d
tkinter-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 8e4491d4b63ea9ecf8964e544fcc977d
 
x86_64:
python-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 5865e3cbff92353e26041f06bce14246
python-devel-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 1ea4d113f01f60aef8f59fa3342f2192
python-docs-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 70aabd3cc03d6268f0134ad0eae32b9a
python-tools-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: a0fb8ab506357cef2a1ce7b45ffe57df
tkinter-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: e3c8fd9912a794ad2cfe51fba1d7c6ad
 
Red Hat Enterprise Linux ES (v. 4.8.z)

SRPMS:
python-2.3.4-14.7.el4_8.2.src.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7c8395b5e0314978d931600a60c53d5e
 
IA-32:
python-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 960c8a20223b89f4a23895487adddb5c
python-devel-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7481651a04ff2a73d56ea254cbf339a8
python-docs-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7cada6b3cd6748490588e769a08510fc
python-tools-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 32ad2323ac2e6b572ce6bf90df66fd41
tkinter-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7e4afe805a5e0077e9f5791469bbbc3f
 
IA-64:
python-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 87f95d98c1e3eb25d82f0d0d9c671ecd
python-devel-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 641db35397e0ebcc86bd1e4edb3978bf
python-docs-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 37d100cddcc57db9ddbc62043edde0fc
python-tools-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: e717150412cfd44de194ac89a0e2975d
tkinter-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 8e4491d4b63ea9ecf8964e544fcc977d
 
x86_64:
python-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 5865e3cbff92353e26041f06bce14246
python-devel-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 1ea4d113f01f60aef8f59fa3342f2192
python-docs-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 70aabd3cc03d6268f0134ad0eae32b9a
python-tools-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: a0fb8ab506357cef2a1ce7b45ffe57df
tkinter-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: e3c8fd9912a794ad2cfe51fba1d7c6ad
 
Red Hat Enterprise Linux WS (v. 4)

SRPMS:
python-2.3.4-14.7.el4_8.2.src.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7c8395b5e0314978d931600a60c53d5e
 
IA-32:
python-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 960c8a20223b89f4a23895487adddb5c
python-devel-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7481651a04ff2a73d56ea254cbf339a8
python-docs-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7cada6b3cd6748490588e769a08510fc
python-tools-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 32ad2323ac2e6b572ce6bf90df66fd41
tkinter-2.3.4-14.7.el4_8.2.i386.rpm
File outdated by:  RHSA-2011:0491
    MD5: 7e4afe805a5e0077e9f5791469bbbc3f
 
IA-64:
python-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 87f95d98c1e3eb25d82f0d0d9c671ecd
python-devel-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 641db35397e0ebcc86bd1e4edb3978bf
python-docs-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 37d100cddcc57db9ddbc62043edde0fc
python-tools-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: e717150412cfd44de194ac89a0e2975d
tkinter-2.3.4-14.7.el4_8.2.ia64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 8e4491d4b63ea9ecf8964e544fcc977d
 
x86_64:
python-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 5865e3cbff92353e26041f06bce14246
python-devel-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 1ea4d113f01f60aef8f59fa3342f2192
python-docs-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: 70aabd3cc03d6268f0134ad0eae32b9a
python-tools-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: a0fb8ab506357cef2a1ce7b45ffe57df
tkinter-2.3.4-14.7.el4_8.2.x86_64.rpm
File outdated by:  RHSA-2011:0491
    MD5: e3c8fd9912a794ad2cfe51fba1d7c6ad
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

441306 - CVE-2008-1679 python: imageop module integer overflows
442005 - CVE-2008-1721 python: integer signedness error in the zlib extension module
443810 - CVE-2008-1887 python: PyString_FromStringAndSize does not check for negative size values
454990 - CVE-2008-3142 python: Multiple buffer overflows in unicode processing
455008 - CVE-2008-2315 python: Multiple integer overflows in python core
455013 - CVE-2008-3143 python: Multiple integer overflows discovered by Google
455018 - CVE-2008-3144 python: Potential integer underflow and overflow in the PyOS_vsnprintf C API function
469656 - CVE-2008-4864 python: imageop module multiple integer overflows
470915 - CVE-2008-5031 python: stringobject, unicodeobject integer overflows


References



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/