Skip to navigation

Security Advisory Moderate: python security update

Advisory: RHSA-2011:0491-1
Type: Security Advisory
Severity: Moderate
Issued on: 2011-05-05
Last updated on: 2011-05-05
Affected Products: Red Hat Desktop (v. 4)
Red Hat Enterprise Linux AS (v. 4)
Red Hat Enterprise Linux AS (v. 4.8.z)
Red Hat Enterprise Linux ES (v. 4)
Red Hat Enterprise Linux ES (v. 4.8.z)
Red Hat Enterprise Linux WS (v. 4)
CVEs (cve.mitre.org): CVE-2009-3720
CVE-2010-1634
CVE-2010-2089
CVE-2010-3493
CVE-2011-1015
CVE-2011-1521

Details

Updated python packages that fix multiple security issues are now available
for Red Hat Enterprise Linux 4.

The Red Hat Security Response Team has rated this update as having moderate
security impact. Common Vulnerability Scoring System (CVSS) base scores,
which give detailed severity ratings, are available for each vulnerability
from the CVE links in the References section.

Python is an interpreted, interactive, object-oriented programming
language.

A flaw was found in the Python urllib and urllib2 libraries where they
would not differentiate between different target URLs when handling
automatic redirects. This caused Python applications using these modules to
follow any new URL that they understood, including the "file://" URL type.
This could allow a remote server to force a local Python application to
read a local file instead of the remote one, possibly exposing local files
that were not meant to be exposed. (CVE-2011-1521)

Multiple flaws were found in the Python audioop module. Supplying certain
inputs could cause the audioop module to crash or, possibly, execute
arbitrary code. (CVE-2010-1634, CVE-2010-2089)

A race condition was found in the way the Python smtpd module handled new
connections. A remote user could use this flaw to cause a Python script
using the smtpd module to terminate. (CVE-2010-3493)

An information disclosure flaw was found in the way the Python
CGIHTTPServer module processed certain HTTP GET requests. A remote attacker
could use a specially-crafted request to obtain the CGI script's source
code. (CVE-2011-1015)

A buffer over-read flaw was found in the way the Python Expat parser
handled malformed UTF-8 sequences when processing XML files. A
specially-crafted XML file could cause Python applications using the Python
Expat parser to crash while parsing the file. (CVE-2009-3720)

This update makes Python use the system Expat library rather than its own
internal copy; therefore, users must have the version of Expat shipped with
RHSA-2009:1625 installed, or a later version, to resolve the CVE-2009-3720
issue.

All Python users should upgrade to these updated packages, which contain
backported patches to correct these issues.


Solution

Before applying this update, make sure all previously-released errata
relevant to your system have been applied.

This update is available via the Red Hat Network. Details on how to
use the Red Hat Network to apply this update are available at
https://access.redhat.com/kb/docs/DOC-11259

Updated packages

Red Hat Desktop (v. 4)

SRPMS:
python-2.3.4-14.10.el4.src.rpm     MD5: 2ee2aa1df0ef6a684d355d21bdfcf80c
SHA-256: 93f41c6369a903c51818fb1ec597064326e023160c330969a6d8a066a1b1ad32
 
IA-32:
python-2.3.4-14.10.el4.i386.rpm     MD5: 108cdc3fd8530c3cbe532a077e63e451
SHA-256: 5ec07a477ff7d5c0cd02c6c6d36e7becf3b7df0fa9a87bf2df82e5bb45a1ab1b
python-devel-2.3.4-14.10.el4.i386.rpm     MD5: b078f12ff5e830bb5a6701bd9deeacba
SHA-256: 65daca92b491c89c0f8990b469893b3746d5d1245ac935288ecc7c69d8c63e09
python-docs-2.3.4-14.10.el4.i386.rpm     MD5: feb0a79e64b177c608abedbe47fa8d4b
SHA-256: 1f1a230993e58bfbf3e9eebac850e0b869706d7b0acde0e01ce950c72002f115
python-tools-2.3.4-14.10.el4.i386.rpm     MD5: faf891cd2d6c25906f7c31b9648ec585
SHA-256: 2e2f6c6dc72fa9ed535e25997892d88f72f389ff4eec6e22a4abe64fff3543d4
tkinter-2.3.4-14.10.el4.i386.rpm     MD5: 222a0919c56c252de364e6cb2a03c49b
SHA-256: 740d8ed206365e60c3321bf6c6aff980dcd019b5a8a041a86041d6fa720d68f7
 
x86_64:
python-2.3.4-14.10.el4.x86_64.rpm     MD5: c800b3c3054e1d42bca1ffd8237843ce
SHA-256: 95bf1dc226f6ed228d59d6e5b83ae84cef315577eca17513c462e54365bf4ed7
python-devel-2.3.4-14.10.el4.x86_64.rpm     MD5: f9786e111d7fb18c9202ee94ec64d804
SHA-256: 42518a3897e442a8531f81293e486ed7f94e1fafe375109d97bc07b15121f602
python-docs-2.3.4-14.10.el4.x86_64.rpm     MD5: 8f4b94ef1c9e4c3132b0fb1de330646e
SHA-256: 1c69bc2d58fb9b55debe4cc06c3bc457324fc4b65f91338df4b92ef2c0c6a63e
python-tools-2.3.4-14.10.el4.x86_64.rpm     MD5: c30f3f34b76e0f5adb0c2657eecf2508
SHA-256: b7d2e241233026f3b10b8f7aa756bdc338d358aff9e6ca5be7b2853e8549834d
tkinter-2.3.4-14.10.el4.x86_64.rpm     MD5: bdf0416dbcc5ba27c0868730ac633e41
SHA-256: eb7a634fb30b32c7508ad3ef6ae15d81ca75b72b54489e60afbddc6b9fcbb0b3
 
Red Hat Enterprise Linux AS (v. 4)

SRPMS:
python-2.3.4-14.10.el4.src.rpm     MD5: 2ee2aa1df0ef6a684d355d21bdfcf80c
SHA-256: 93f41c6369a903c51818fb1ec597064326e023160c330969a6d8a066a1b1ad32
 
IA-32:
python-2.3.4-14.10.el4.i386.rpm     MD5: 108cdc3fd8530c3cbe532a077e63e451
SHA-256: 5ec07a477ff7d5c0cd02c6c6d36e7becf3b7df0fa9a87bf2df82e5bb45a1ab1b
python-devel-2.3.4-14.10.el4.i386.rpm     MD5: b078f12ff5e830bb5a6701bd9deeacba
SHA-256: 65daca92b491c89c0f8990b469893b3746d5d1245ac935288ecc7c69d8c63e09
python-docs-2.3.4-14.10.el4.i386.rpm     MD5: feb0a79e64b177c608abedbe47fa8d4b
SHA-256: 1f1a230993e58bfbf3e9eebac850e0b869706d7b0acde0e01ce950c72002f115
python-tools-2.3.4-14.10.el4.i386.rpm     MD5: faf891cd2d6c25906f7c31b9648ec585
SHA-256: 2e2f6c6dc72fa9ed535e25997892d88f72f389ff4eec6e22a4abe64fff3543d4
tkinter-2.3.4-14.10.el4.i386.rpm     MD5: 222a0919c56c252de364e6cb2a03c49b
SHA-256: 740d8ed206365e60c3321bf6c6aff980dcd019b5a8a041a86041d6fa720d68f7
 
IA-64:
python-2.3.4-14.10.el4.ia64.rpm     MD5: e8d79b3f717b455430887d4356316677
SHA-256: 5d9efb9104af481515cca7bf2a58d6ba1ecaabb0529d3b8e0c5eb7916c05dd4d
python-devel-2.3.4-14.10.el4.ia64.rpm     MD5: 2082462c21595a3289947ff3bd31ecd5
SHA-256: e88fd0f7d42344897055780409a7a25fe2ac22382e95bc9ef145cbd96508b376
python-docs-2.3.4-14.10.el4.ia64.rpm     MD5: 90027ac23ef1493f2099585fb24e54f0
SHA-256: a26292581ada7d512edd5fa538492f46bfecda2a8356ea1ab8ede18d9585f773
python-tools-2.3.4-14.10.el4.ia64.rpm     MD5: fd060b71fa3505761bde4ea2cc84db29
SHA-256: cdf5a0b3fa3934fe93e0d3c0b9a1b458107aa27577a78a18efab032207aaf9d2
tkinter-2.3.4-14.10.el4.ia64.rpm     MD5: 11934be49d244ea9a40f3f8ee736ff42
SHA-256: 8e2d6f80ab20be2c46dcd60c74774b2f63f528f930a81d83b0ebba6beba82f7b
 
PPC:
python-2.3.4-14.10.el4.ppc.rpm     MD5: 306714e9057db9e2c02e6e0a5ff183f3
SHA-256: 2716a52f418a22ed59962352f0bdb99af641bde83dd12ad55e3f15f7c1107e58
python-devel-2.3.4-14.10.el4.ppc.rpm     MD5: a03d96fc7df4a259e0b3106a223a526c
SHA-256: 7576aa3dec58c7596373354996d0b650e79dbb2d79e54f179d2c3e8ffb429490
python-docs-2.3.4-14.10.el4.ppc.rpm     MD5: 6b62854205ee1f731044d780b605832f
SHA-256: c2aa87e84836c05ddbf5f8684a268d637544dbf6df0f7f16993378ec681beb3a
python-tools-2.3.4-14.10.el4.ppc.rpm     MD5: d8f74e16d1d768493a86360b1e225a07
SHA-256: 2c570f42d30b5f22d4f40ae7a28a4d66c5c050dee00595d9166032cefa997f62
tkinter-2.3.4-14.10.el4.ppc.rpm     MD5: 9bde8b359d2bb22f67579f6f964a303b
SHA-256: 797a37808931de7c3b46d43f739c7cb86b4f3a0cfede664f5007e7a42b183d22
 
s390:
python-2.3.4-14.10.el4.s390.rpm     MD5: 864985708b405e30f1221adc179269f2
SHA-256: 6e64ffbb6767a596cb8e543676b493f16d51cee3eebae735ff13b6dcaffa4081
python-devel-2.3.4-14.10.el4.s390.rpm     MD5: c5988d53a1e1941f5eaad0d160773dd0
SHA-256: 92026bddce80715f2fe8bfd39ada5dac767934f0137241536a0f413cfa80547f
python-docs-2.3.4-14.10.el4.s390.rpm     MD5: 4848919203b81bb030a0f605d7b22edd
SHA-256: 245572596e2f76eaac0c7b04c31891e0e5b712686b46f45b367f93919c04bb03
python-tools-2.3.4-14.10.el4.s390.rpm     MD5: 70954120ab29060cf14f2ed3d274d625
SHA-256: 5b76936ba22478e3b8d3e621346edf2d3b8ccfcf42b71a6130e799ddb35d73d2
tkinter-2.3.4-14.10.el4.s390.rpm     MD5: 3b3a6e77c54384f08f2f0c1cf8bbed11
SHA-256: 5144c2f4bb272d1f1eab4ef95e2aa387af857cdce8f3b2cb437f6c6006c591d3
 
s390x:
python-2.3.4-14.10.el4.s390x.rpm     MD5: 6c23ffe389e7aceaac15f820e282af3d
SHA-256: c2d6b67ecb77356a802a92d95b5c75f263a397798e28c3d8cd692cfdf1207bf8
python-devel-2.3.4-14.10.el4.s390x.rpm     MD5: db81d182f89e3759f0d9dc698e893f1b
SHA-256: 918ebb00f8c1be1c2a0c53b4f08e573c875f0cafe8ed65a2b07739973e4be519
python-docs-2.3.4-14.10.el4.s390x.rpm     MD5: aa6cbb420cbe168f05848174883c6076
SHA-256: e5a60218d0a0e825a6655f5419f2b551bced229dec4b7c4a8fdbb9ff177f6239
python-tools-2.3.4-14.10.el4.s390x.rpm     MD5: 4258ec768030f5a6dfce94589202c91a
SHA-256: 07d26dc227c75e8ff163d89aa2853baefd91c632bf6166e1c7a7675aa2934616
tkinter-2.3.4-14.10.el4.s390x.rpm     MD5: 1f7500557e5219bf8550d2f94df72302
SHA-256: 22bc2a14907f89bf21df8c0981777f1ed3c609053b6bee11c77ffbd4a140d9a6
 
x86_64:
python-2.3.4-14.10.el4.x86_64.rpm     MD5: c800b3c3054e1d42bca1ffd8237843ce
SHA-256: 95bf1dc226f6ed228d59d6e5b83ae84cef315577eca17513c462e54365bf4ed7
python-devel-2.3.4-14.10.el4.x86_64.rpm     MD5: f9786e111d7fb18c9202ee94ec64d804
SHA-256: 42518a3897e442a8531f81293e486ed7f94e1fafe375109d97bc07b15121f602
python-docs-2.3.4-14.10.el4.x86_64.rpm     MD5: 8f4b94ef1c9e4c3132b0fb1de330646e
SHA-256: 1c69bc2d58fb9b55debe4cc06c3bc457324fc4b65f91338df4b92ef2c0c6a63e
python-tools-2.3.4-14.10.el4.x86_64.rpm     MD5: c30f3f34b76e0f5adb0c2657eecf2508
SHA-256: b7d2e241233026f3b10b8f7aa756bdc338d358aff9e6ca5be7b2853e8549834d
tkinter-2.3.4-14.10.el4.x86_64.rpm     MD5: bdf0416dbcc5ba27c0868730ac633e41
SHA-256: eb7a634fb30b32c7508ad3ef6ae15d81ca75b72b54489e60afbddc6b9fcbb0b3
 
Red Hat Enterprise Linux AS (v. 4.8.z)

SRPMS:
python-2.3.4-14.10.el4.src.rpm     MD5: 2ee2aa1df0ef6a684d355d21bdfcf80c
SHA-256: 93f41c6369a903c51818fb1ec597064326e023160c330969a6d8a066a1b1ad32
 
IA-32:
python-2.3.4-14.10.el4.i386.rpm     MD5: 108cdc3fd8530c3cbe532a077e63e451
SHA-256: 5ec07a477ff7d5c0cd02c6c6d36e7becf3b7df0fa9a87bf2df82e5bb45a1ab1b
python-devel-2.3.4-14.10.el4.i386.rpm     MD5: b078f12ff5e830bb5a6701bd9deeacba
SHA-256: 65daca92b491c89c0f8990b469893b3746d5d1245ac935288ecc7c69d8c63e09
python-docs-2.3.4-14.10.el4.i386.rpm     MD5: feb0a79e64b177c608abedbe47fa8d4b
SHA-256: 1f1a230993e58bfbf3e9eebac850e0b869706d7b0acde0e01ce950c72002f115
python-tools-2.3.4-14.10.el4.i386.rpm     MD5: faf891cd2d6c25906f7c31b9648ec585
SHA-256: 2e2f6c6dc72fa9ed535e25997892d88f72f389ff4eec6e22a4abe64fff3543d4
tkinter-2.3.4-14.10.el4.i386.rpm     MD5: 222a0919c56c252de364e6cb2a03c49b
SHA-256: 740d8ed206365e60c3321bf6c6aff980dcd019b5a8a041a86041d6fa720d68f7
 
IA-64:
python-2.3.4-14.10.el4.ia64.rpm     MD5: e8d79b3f717b455430887d4356316677
SHA-256: 5d9efb9104af481515cca7bf2a58d6ba1ecaabb0529d3b8e0c5eb7916c05dd4d
python-devel-2.3.4-14.10.el4.ia64.rpm     MD5: 2082462c21595a3289947ff3bd31ecd5
SHA-256: e88fd0f7d42344897055780409a7a25fe2ac22382e95bc9ef145cbd96508b376
python-docs-2.3.4-14.10.el4.ia64.rpm     MD5: 90027ac23ef1493f2099585fb24e54f0
SHA-256: a26292581ada7d512edd5fa538492f46bfecda2a8356ea1ab8ede18d9585f773
python-tools-2.3.4-14.10.el4.ia64.rpm     MD5: fd060b71fa3505761bde4ea2cc84db29
SHA-256: cdf5a0b3fa3934fe93e0d3c0b9a1b458107aa27577a78a18efab032207aaf9d2
tkinter-2.3.4-14.10.el4.ia64.rpm     MD5: 11934be49d244ea9a40f3f8ee736ff42
SHA-256: 8e2d6f80ab20be2c46dcd60c74774b2f63f528f930a81d83b0ebba6beba82f7b
 
PPC:
python-2.3.4-14.10.el4.ppc.rpm     MD5: 306714e9057db9e2c02e6e0a5ff183f3
SHA-256: 2716a52f418a22ed59962352f0bdb99af641bde83dd12ad55e3f15f7c1107e58
python-devel-2.3.4-14.10.el4.ppc.rpm     MD5: a03d96fc7df4a259e0b3106a223a526c
SHA-256: 7576aa3dec58c7596373354996d0b650e79dbb2d79e54f179d2c3e8ffb429490
python-docs-2.3.4-14.10.el4.ppc.rpm     MD5: 6b62854205ee1f731044d780b605832f
SHA-256: c2aa87e84836c05ddbf5f8684a268d637544dbf6df0f7f16993378ec681beb3a
python-tools-2.3.4-14.10.el4.ppc.rpm     MD5: d8f74e16d1d768493a86360b1e225a07
SHA-256: 2c570f42d30b5f22d4f40ae7a28a4d66c5c050dee00595d9166032cefa997f62
tkinter-2.3.4-14.10.el4.ppc.rpm     MD5: 9bde8b359d2bb22f67579f6f964a303b
SHA-256: 797a37808931de7c3b46d43f739c7cb86b4f3a0cfede664f5007e7a42b183d22
 
s390:
python-2.3.4-14.10.el4.s390.rpm     MD5: 864985708b405e30f1221adc179269f2
SHA-256: 6e64ffbb6767a596cb8e543676b493f16d51cee3eebae735ff13b6dcaffa4081
python-devel-2.3.4-14.10.el4.s390.rpm     MD5: c5988d53a1e1941f5eaad0d160773dd0
SHA-256: 92026bddce80715f2fe8bfd39ada5dac767934f0137241536a0f413cfa80547f
python-docs-2.3.4-14.10.el4.s390.rpm     MD5: 4848919203b81bb030a0f605d7b22edd
SHA-256: 245572596e2f76eaac0c7b04c31891e0e5b712686b46f45b367f93919c04bb03
python-tools-2.3.4-14.10.el4.s390.rpm     MD5: 70954120ab29060cf14f2ed3d274d625
SHA-256: 5b76936ba22478e3b8d3e621346edf2d3b8ccfcf42b71a6130e799ddb35d73d2
tkinter-2.3.4-14.10.el4.s390.rpm     MD5: 3b3a6e77c54384f08f2f0c1cf8bbed11
SHA-256: 5144c2f4bb272d1f1eab4ef95e2aa387af857cdce8f3b2cb437f6c6006c591d3
 
s390x:
python-2.3.4-14.10.el4.s390x.rpm     MD5: 6c23ffe389e7aceaac15f820e282af3d
SHA-256: c2d6b67ecb77356a802a92d95b5c75f263a397798e28c3d8cd692cfdf1207bf8
python-devel-2.3.4-14.10.el4.s390x.rpm     MD5: db81d182f89e3759f0d9dc698e893f1b
SHA-256: 918ebb00f8c1be1c2a0c53b4f08e573c875f0cafe8ed65a2b07739973e4be519
python-docs-2.3.4-14.10.el4.s390x.rpm     MD5: aa6cbb420cbe168f05848174883c6076
SHA-256: e5a60218d0a0e825a6655f5419f2b551bced229dec4b7c4a8fdbb9ff177f6239
python-tools-2.3.4-14.10.el4.s390x.rpm     MD5: 4258ec768030f5a6dfce94589202c91a
SHA-256: 07d26dc227c75e8ff163d89aa2853baefd91c632bf6166e1c7a7675aa2934616
tkinter-2.3.4-14.10.el4.s390x.rpm     MD5: 1f7500557e5219bf8550d2f94df72302
SHA-256: 22bc2a14907f89bf21df8c0981777f1ed3c609053b6bee11c77ffbd4a140d9a6
 
x86_64:
python-2.3.4-14.10.el4.x86_64.rpm     MD5: c800b3c3054e1d42bca1ffd8237843ce
SHA-256: 95bf1dc226f6ed228d59d6e5b83ae84cef315577eca17513c462e54365bf4ed7
python-devel-2.3.4-14.10.el4.x86_64.rpm     MD5: f9786e111d7fb18c9202ee94ec64d804
SHA-256: 42518a3897e442a8531f81293e486ed7f94e1fafe375109d97bc07b15121f602
python-docs-2.3.4-14.10.el4.x86_64.rpm     MD5: 8f4b94ef1c9e4c3132b0fb1de330646e
SHA-256: 1c69bc2d58fb9b55debe4cc06c3bc457324fc4b65f91338df4b92ef2c0c6a63e
python-tools-2.3.4-14.10.el4.x86_64.rpm     MD5: c30f3f34b76e0f5adb0c2657eecf2508
SHA-256: b7d2e241233026f3b10b8f7aa756bdc338d358aff9e6ca5be7b2853e8549834d
tkinter-2.3.4-14.10.el4.x86_64.rpm     MD5: bdf0416dbcc5ba27c0868730ac633e41
SHA-256: eb7a634fb30b32c7508ad3ef6ae15d81ca75b72b54489e60afbddc6b9fcbb0b3
 
Red Hat Enterprise Linux ES (v. 4)

SRPMS:
python-2.3.4-14.10.el4.src.rpm     MD5: 2ee2aa1df0ef6a684d355d21bdfcf80c
SHA-256: 93f41c6369a903c51818fb1ec597064326e023160c330969a6d8a066a1b1ad32
 
IA-32:
python-2.3.4-14.10.el4.i386.rpm     MD5: 108cdc3fd8530c3cbe532a077e63e451
SHA-256: 5ec07a477ff7d5c0cd02c6c6d36e7becf3b7df0fa9a87bf2df82e5bb45a1ab1b
python-devel-2.3.4-14.10.el4.i386.rpm     MD5: b078f12ff5e830bb5a6701bd9deeacba
SHA-256: 65daca92b491c89c0f8990b469893b3746d5d1245ac935288ecc7c69d8c63e09
python-docs-2.3.4-14.10.el4.i386.rpm     MD5: feb0a79e64b177c608abedbe47fa8d4b
SHA-256: 1f1a230993e58bfbf3e9eebac850e0b869706d7b0acde0e01ce950c72002f115
python-tools-2.3.4-14.10.el4.i386.rpm     MD5: faf891cd2d6c25906f7c31b9648ec585
SHA-256: 2e2f6c6dc72fa9ed535e25997892d88f72f389ff4eec6e22a4abe64fff3543d4
tkinter-2.3.4-14.10.el4.i386.rpm     MD5: 222a0919c56c252de364e6cb2a03c49b
SHA-256: 740d8ed206365e60c3321bf6c6aff980dcd019b5a8a041a86041d6fa720d68f7
 
IA-64:
python-2.3.4-14.10.el4.ia64.rpm     MD5: e8d79b3f717b455430887d4356316677
SHA-256: 5d9efb9104af481515cca7bf2a58d6ba1ecaabb0529d3b8e0c5eb7916c05dd4d
python-devel-2.3.4-14.10.el4.ia64.rpm     MD5: 2082462c21595a3289947ff3bd31ecd5
SHA-256: e88fd0f7d42344897055780409a7a25fe2ac22382e95bc9ef145cbd96508b376
python-docs-2.3.4-14.10.el4.ia64.rpm     MD5: 90027ac23ef1493f2099585fb24e54f0
SHA-256: a26292581ada7d512edd5fa538492f46bfecda2a8356ea1ab8ede18d9585f773
python-tools-2.3.4-14.10.el4.ia64.rpm     MD5: fd060b71fa3505761bde4ea2cc84db29
SHA-256: cdf5a0b3fa3934fe93e0d3c0b9a1b458107aa27577a78a18efab032207aaf9d2
tkinter-2.3.4-14.10.el4.ia64.rpm     MD5: 11934be49d244ea9a40f3f8ee736ff42
SHA-256: 8e2d6f80ab20be2c46dcd60c74774b2f63f528f930a81d83b0ebba6beba82f7b
 
x86_64:
python-2.3.4-14.10.el4.x86_64.rpm     MD5: c800b3c3054e1d42bca1ffd8237843ce
SHA-256: 95bf1dc226f6ed228d59d6e5b83ae84cef315577eca17513c462e54365bf4ed7
python-devel-2.3.4-14.10.el4.x86_64.rpm     MD5: f9786e111d7fb18c9202ee94ec64d804
SHA-256: 42518a3897e442a8531f81293e486ed7f94e1fafe375109d97bc07b15121f602
python-docs-2.3.4-14.10.el4.x86_64.rpm     MD5: 8f4b94ef1c9e4c3132b0fb1de330646e
SHA-256: 1c69bc2d58fb9b55debe4cc06c3bc457324fc4b65f91338df4b92ef2c0c6a63e
python-tools-2.3.4-14.10.el4.x86_64.rpm     MD5: c30f3f34b76e0f5adb0c2657eecf2508
SHA-256: b7d2e241233026f3b10b8f7aa756bdc338d358aff9e6ca5be7b2853e8549834d
tkinter-2.3.4-14.10.el4.x86_64.rpm     MD5: bdf0416dbcc5ba27c0868730ac633e41
SHA-256: eb7a634fb30b32c7508ad3ef6ae15d81ca75b72b54489e60afbddc6b9fcbb0b3
 
Red Hat Enterprise Linux ES (v. 4.8.z)

SRPMS:
python-2.3.4-14.10.el4.src.rpm     MD5: 2ee2aa1df0ef6a684d355d21bdfcf80c
SHA-256: 93f41c6369a903c51818fb1ec597064326e023160c330969a6d8a066a1b1ad32
 
IA-32:
python-2.3.4-14.10.el4.i386.rpm     MD5: 108cdc3fd8530c3cbe532a077e63e451
SHA-256: 5ec07a477ff7d5c0cd02c6c6d36e7becf3b7df0fa9a87bf2df82e5bb45a1ab1b
python-devel-2.3.4-14.10.el4.i386.rpm     MD5: b078f12ff5e830bb5a6701bd9deeacba
SHA-256: 65daca92b491c89c0f8990b469893b3746d5d1245ac935288ecc7c69d8c63e09
python-docs-2.3.4-14.10.el4.i386.rpm     MD5: feb0a79e64b177c608abedbe47fa8d4b
SHA-256: 1f1a230993e58bfbf3e9eebac850e0b869706d7b0acde0e01ce950c72002f115
python-tools-2.3.4-14.10.el4.i386.rpm     MD5: faf891cd2d6c25906f7c31b9648ec585
SHA-256: 2e2f6c6dc72fa9ed535e25997892d88f72f389ff4eec6e22a4abe64fff3543d4
tkinter-2.3.4-14.10.el4.i386.rpm     MD5: 222a0919c56c252de364e6cb2a03c49b
SHA-256: 740d8ed206365e60c3321bf6c6aff980dcd019b5a8a041a86041d6fa720d68f7
 
IA-64:
python-2.3.4-14.10.el4.ia64.rpm     MD5: e8d79b3f717b455430887d4356316677
SHA-256: 5d9efb9104af481515cca7bf2a58d6ba1ecaabb0529d3b8e0c5eb7916c05dd4d
python-devel-2.3.4-14.10.el4.ia64.rpm     MD5: 2082462c21595a3289947ff3bd31ecd5
SHA-256: e88fd0f7d42344897055780409a7a25fe2ac22382e95bc9ef145cbd96508b376
python-docs-2.3.4-14.10.el4.ia64.rpm     MD5: 90027ac23ef1493f2099585fb24e54f0
SHA-256: a26292581ada7d512edd5fa538492f46bfecda2a8356ea1ab8ede18d9585f773
python-tools-2.3.4-14.10.el4.ia64.rpm     MD5: fd060b71fa3505761bde4ea2cc84db29
SHA-256: cdf5a0b3fa3934fe93e0d3c0b9a1b458107aa27577a78a18efab032207aaf9d2
tkinter-2.3.4-14.10.el4.ia64.rpm     MD5: 11934be49d244ea9a40f3f8ee736ff42
SHA-256: 8e2d6f80ab20be2c46dcd60c74774b2f63f528f930a81d83b0ebba6beba82f7b
 
x86_64:
python-2.3.4-14.10.el4.x86_64.rpm     MD5: c800b3c3054e1d42bca1ffd8237843ce
SHA-256: 95bf1dc226f6ed228d59d6e5b83ae84cef315577eca17513c462e54365bf4ed7
python-devel-2.3.4-14.10.el4.x86_64.rpm     MD5: f9786e111d7fb18c9202ee94ec64d804
SHA-256: 42518a3897e442a8531f81293e486ed7f94e1fafe375109d97bc07b15121f602
python-docs-2.3.4-14.10.el4.x86_64.rpm     MD5: 8f4b94ef1c9e4c3132b0fb1de330646e
SHA-256: 1c69bc2d58fb9b55debe4cc06c3bc457324fc4b65f91338df4b92ef2c0c6a63e
python-tools-2.3.4-14.10.el4.x86_64.rpm     MD5: c30f3f34b76e0f5adb0c2657eecf2508
SHA-256: b7d2e241233026f3b10b8f7aa756bdc338d358aff9e6ca5be7b2853e8549834d
tkinter-2.3.4-14.10.el4.x86_64.rpm     MD5: bdf0416dbcc5ba27c0868730ac633e41
SHA-256: eb7a634fb30b32c7508ad3ef6ae15d81ca75b72b54489e60afbddc6b9fcbb0b3
 
Red Hat Enterprise Linux WS (v. 4)

SRPMS:
python-2.3.4-14.10.el4.src.rpm     MD5: 2ee2aa1df0ef6a684d355d21bdfcf80c
SHA-256: 93f41c6369a903c51818fb1ec597064326e023160c330969a6d8a066a1b1ad32
 
IA-32:
python-2.3.4-14.10.el4.i386.rpm     MD5: 108cdc3fd8530c3cbe532a077e63e451
SHA-256: 5ec07a477ff7d5c0cd02c6c6d36e7becf3b7df0fa9a87bf2df82e5bb45a1ab1b
python-devel-2.3.4-14.10.el4.i386.rpm     MD5: b078f12ff5e830bb5a6701bd9deeacba
SHA-256: 65daca92b491c89c0f8990b469893b3746d5d1245ac935288ecc7c69d8c63e09
python-docs-2.3.4-14.10.el4.i386.rpm     MD5: feb0a79e64b177c608abedbe47fa8d4b
SHA-256: 1f1a230993e58bfbf3e9eebac850e0b869706d7b0acde0e01ce950c72002f115
python-tools-2.3.4-14.10.el4.i386.rpm     MD5: faf891cd2d6c25906f7c31b9648ec585
SHA-256: 2e2f6c6dc72fa9ed535e25997892d88f72f389ff4eec6e22a4abe64fff3543d4
tkinter-2.3.4-14.10.el4.i386.rpm     MD5: 222a0919c56c252de364e6cb2a03c49b
SHA-256: 740d8ed206365e60c3321bf6c6aff980dcd019b5a8a041a86041d6fa720d68f7
 
IA-64:
python-2.3.4-14.10.el4.ia64.rpm     MD5: e8d79b3f717b455430887d4356316677
SHA-256: 5d9efb9104af481515cca7bf2a58d6ba1ecaabb0529d3b8e0c5eb7916c05dd4d
python-devel-2.3.4-14.10.el4.ia64.rpm     MD5: 2082462c21595a3289947ff3bd31ecd5
SHA-256: e88fd0f7d42344897055780409a7a25fe2ac22382e95bc9ef145cbd96508b376
python-docs-2.3.4-14.10.el4.ia64.rpm     MD5: 90027ac23ef1493f2099585fb24e54f0
SHA-256: a26292581ada7d512edd5fa538492f46bfecda2a8356ea1ab8ede18d9585f773
python-tools-2.3.4-14.10.el4.ia64.rpm     MD5: fd060b71fa3505761bde4ea2cc84db29
SHA-256: cdf5a0b3fa3934fe93e0d3c0b9a1b458107aa27577a78a18efab032207aaf9d2
tkinter-2.3.4-14.10.el4.ia64.rpm     MD5: 11934be49d244ea9a40f3f8ee736ff42
SHA-256: 8e2d6f80ab20be2c46dcd60c74774b2f63f528f930a81d83b0ebba6beba82f7b
 
x86_64:
python-2.3.4-14.10.el4.x86_64.rpm     MD5: c800b3c3054e1d42bca1ffd8237843ce
SHA-256: 95bf1dc226f6ed228d59d6e5b83ae84cef315577eca17513c462e54365bf4ed7
python-devel-2.3.4-14.10.el4.x86_64.rpm     MD5: f9786e111d7fb18c9202ee94ec64d804
SHA-256: 42518a3897e442a8531f81293e486ed7f94e1fafe375109d97bc07b15121f602
python-docs-2.3.4-14.10.el4.x86_64.rpm     MD5: 8f4b94ef1c9e4c3132b0fb1de330646e
SHA-256: 1c69bc2d58fb9b55debe4cc06c3bc457324fc4b65f91338df4b92ef2c0c6a63e
python-tools-2.3.4-14.10.el4.x86_64.rpm     MD5: c30f3f34b76e0f5adb0c2657eecf2508
SHA-256: b7d2e241233026f3b10b8f7aa756bdc338d358aff9e6ca5be7b2853e8549834d
tkinter-2.3.4-14.10.el4.x86_64.rpm     MD5: bdf0416dbcc5ba27c0868730ac633e41
SHA-256: eb7a634fb30b32c7508ad3ef6ae15d81ca75b72b54489e60afbddc6b9fcbb0b3
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

531697 - CVE-2009-3720 expat: buffer over-read and crash on XML with malformed UTF-8 sequences
590690 - CVE-2010-1634 python: audioop: incorrect integer overflow checks
598197 - CVE-2010-2089 Python: Memory corruption in audioop module
632200 - CVE-2010-3493 Python: SMTP proxy RFC 2821 module DoS (uncaught exception) (Issue #9129)
680094 - CVE-2011-1015 python (CGIHTTPServer): CGI script source code disclosure
690560 - CVE-2011-1521 python (urllib, urllib2): Improper management of ftp:// and file:// URL schemes (Issue #11662)


References



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/