Skip to navigation

Security Advisory Moderate: python security update

Advisory: RHSA-2011:0492-1
Type: Security Advisory
Severity: Moderate
Issued on: 2011-05-05
Last updated on: 2011-05-05
Affected Products: RHEL Desktop Workstation (v. 5 client)
Red Hat Enterprise Linux (v. 5 server)
Red Hat Enterprise Linux Desktop (v. 5 client)
Red Hat Enterprise Linux EUS (v. 5.6.z server)
Red Hat Enterprise Linux Long Life (v. 5.6 server)
CVEs (cve.mitre.org): CVE-2009-3720
CVE-2010-3493
CVE-2011-1015
CVE-2011-1521

Details

Updated python packages that fix multiple security issues are now available
for Red Hat Enterprise Linux 5.

The Red Hat Security Response Team has rated this update as having moderate
security impact. Common Vulnerability Scoring System (CVSS) base scores,
which give detailed severity ratings, are available for each vulnerability
from the CVE links in the References section.

Python is an interpreted, interactive, object-oriented programming
language.

A flaw was found in the Python urllib and urllib2 libraries where they
would not differentiate between different target URLs when handling
automatic redirects. This caused Python applications using these modules to
follow any new URL that they understood, including the "file://" URL type.
This could allow a remote server to force a local Python application to
read a local file instead of the remote one, possibly exposing local files
that were not meant to be exposed. (CVE-2011-1521)

A race condition was found in the way the Python smtpd module handled new
connections. A remote user could use this flaw to cause a Python script
using the smtpd module to terminate. (CVE-2010-3493)

An information disclosure flaw was found in the way the Python
CGIHTTPServer module processed certain HTTP GET requests. A remote attacker
could use a specially-crafted request to obtain the CGI script's source
code. (CVE-2011-1015)

A buffer over-read flaw was found in the way the Python Expat parser
handled malformed UTF-8 sequences when processing XML files. A
specially-crafted XML file could cause Python applications using the Python
Expat parser to crash while parsing the file. (CVE-2009-3720)

This update makes Python use the system Expat library rather than its own
internal copy; therefore, users must have the version of Expat shipped with
RHSA-2009:1625 installed, or a later version, to resolve the CVE-2009-3720
issue.

All Python users should upgrade to these updated packages, which contain
backported patches to correct these issues.


Solution

Before applying this update, make sure all previously-released errata
relevant to your system have been applied.

This update is available via the Red Hat Network. Details on how to
use the Red Hat Network to apply this update are available at
https://access.redhat.com/kb/docs/DOC-11259

Updated packages

RHEL Desktop Workstation (v. 5 client)

SRPMS:
python-2.4.3-44.el5.src.rpm
File outdated by:  RHBA-2013:0045
    MD5: 792d89d150497f1a754b6330f29b6c20
SHA-256: 7417fd859790aca9a37774378b5fc20ffc53fdf4d25e2d303f47e9c859beed36
 
IA-32:
python-devel-2.4.3-44.el5.i386.rpm
File outdated by:  RHBA-2013:0045
    MD5: 7d48fcfcfc58d1697e2e1ea8e709de0d
SHA-256: b0141b9fb994d0ed8b7a8e02a5ddf2802ec020685ce5e04be7275abdcea6405f
 
x86_64:
python-devel-2.4.3-44.el5.i386.rpm
File outdated by:  RHBA-2013:0045
    MD5: 7d48fcfcfc58d1697e2e1ea8e709de0d
SHA-256: b0141b9fb994d0ed8b7a8e02a5ddf2802ec020685ce5e04be7275abdcea6405f
python-devel-2.4.3-44.el5.x86_64.rpm
File outdated by:  RHBA-2013:0045
    MD5: e0e54d2301b87c2be38d48e0a5e053e0
SHA-256: 843800ebc174efa71a591337e57850a18639565ec76fd59938538c43606517db
 
Red Hat Enterprise Linux (v. 5 server)

SRPMS:
python-2.4.3-44.el5.src.rpm
File outdated by:  RHBA-2013:0045
    MD5: 792d89d150497f1a754b6330f29b6c20
SHA-256: 7417fd859790aca9a37774378b5fc20ffc53fdf4d25e2d303f47e9c859beed36
 
IA-32:
python-2.4.3-44.el5.i386.rpm
File outdated by:  RHBA-2013:0045
    MD5: a0e97923b77a2e8e9c2b303eef02b817
SHA-256: ba4700caf699ce07adbcf61c6571a941a374631fd07d22afd658a4d23b6bc3d4
python-devel-2.4.3-44.el5.i386.rpm
File outdated by:  RHBA-2013:0045
    MD5: 7d48fcfcfc58d1697e2e1ea8e709de0d
SHA-256: b0141b9fb994d0ed8b7a8e02a5ddf2802ec020685ce5e04be7275abdcea6405f
python-libs-2.4.3-44.el5.i386.rpm
File outdated by:  RHBA-2013:0045
    MD5: 661d2fb62751fc3c1c27a22fb011be70
SHA-256: 92f63691de167e3f63e357d28bbfcba3916881542f8c912c43d6772c934f1275
python-tools-2.4.3-44.el5.i386.rpm
File outdated by:  RHBA-2013:0045
    MD5: 401d3f08a7e04857e6332e927c50d394
SHA-256: eb650b2d09aaa69e46e3a02622a90ec26a9eca66cf6b62a5c2e66ce73ce69d14
tkinter-2.4.3-44.el5.i386.rpm
File outdated by:  RHBA-2013:0045
    MD5: 7a57cda81f95bfa8e5335066406edb80
SHA-256: 72c86d73ef60a7936518a5afa58f61675fda0a9fa67184ea3252bab8ba561cd5
 
IA-64:
python-2.4.3-44.el5.ia64.rpm
File outdated by:  RHBA-2013:0045
    MD5: 645080f57c9730023ab4f35f4ecf99ba
SHA-256: 0a872c5234781faf56a1db5a5aab0c1144d5a785f91a493931b1eb3eb17c2ef2
python-devel-2.4.3-44.el5.ia64.rpm
File outdated by:  RHBA-2013:0045
    MD5: d714ed789c7f07cff9bca91db0b4ac01
SHA-256: 12fca2b6e0f1d223229d4b2277dae5d642d2e55851d030d5d105bd3fb25eb344
python-libs-2.4.3-44.el5.i386.rpm
File outdated by:  RHBA-2013:0045
    MD5: 661d2fb62751fc3c1c27a22fb011be70
SHA-256: 92f63691de167e3f63e357d28bbfcba3916881542f8c912c43d6772c934f1275
python-libs-2.4.3-44.el5.ia64.rpm
File outdated by:  RHBA-2013:0045
    MD5: 5a41d093e44a2d382ce369a9412a8e85
SHA-256: c72e9b6e89e6133b37c60770dfbf6aeeea3a86c7ce6711871931ba367072f069
python-tools-2.4.3-44.el5.ia64.rpm
File outdated by:  RHBA-2013:0045
    MD5: bfdeb9a903487473cf0d1e979be8687a
SHA-256: 4f432194e24c0fa96ca1972c89606572a6ebe011c5ff0874c349712f29d784a3
tkinter-2.4.3-44.el5.ia64.rpm
File outdated by:  RHBA-2013:0045
    MD5: 415144a70820067ba6ae74031e89c773
SHA-256: 5fb086d68fd55cc1a13d4a7d57bf2980340fd8fa8e998cbe8bfbf1cf572d93ee
 
PPC:
python-2.4.3-44.el5.ppc.rpm
File outdated by:  RHBA-2013:0045
    MD5: b2a87454d53f149fb678e504480812c4
SHA-256: 0315f39e6e5532f559ae0adcc41aae6b0e515221b988ed6c0e5245840560fd7f
python-devel-2.4.3-44.el5.ppc.rpm
File outdated by:  RHBA-2013:0045
    MD5: 44455ffef35c93591107a664561a3c42
SHA-256: 26877f70389c47268df2face1c707f835d0b3bfff7fdf927363c7e6aac6ebcc2
python-devel-2.4.3-44.el5.ppc64.rpm
File outdated by:  RHBA-2013:0045
    MD5: 0563449b568e071c20dbc585ce819894
SHA-256: 6052affbb6064f324e9d3e5cc0817ee929a970e0af5b0b9daa90fe1783665316
python-libs-2.4.3-44.el5.ppc.rpm
File outdated by:  RHBA-2013:0045
    MD5: 3a32b7db6af12e0aecf8582a9408604f
SHA-256: b24404df9941106739f7daa81c1b88884ab9e339ac97aad0bebaa4a56a428636
python-libs-2.4.3-44.el5.ppc64.rpm
File outdated by:  RHBA-2013:0045
    MD5: 988a524a05335fcfce506e24c012e8df
SHA-256: a8ce610cac20d543d87573c48e62e1b555d86026b199d27454399fe263385172
python-tools-2.4.3-44.el5.ppc.rpm
File outdated by:  RHBA-2013:0045
    MD5: 7a909667f34441f7eae2acdc141427b3
SHA-256: fafced147bf1005224d401f23db0a3fb61229b1eb8a5e96b5110dc27a1901117
tkinter-2.4.3-44.el5.ppc.rpm
File outdated by:  RHBA-2013:0045
    MD5: 5467e8a17d24c64465e0eae5d5d20e5b
SHA-256: 0e5aac819804449b4cf75c258b8b43cc414a8a7e8a2bfa1a11379417db216197
 
s390x:
python-2.4.3-44.el5.s390x.rpm
File outdated by:  RHBA-2013:0045
    MD5: 2721535d03755fd711b42d217e7c51d7
SHA-256: bd245c72b372638a374d9c1c5933fd63753247603400792fe412f02a58a6250b
python-devel-2.4.3-44.el5.s390.rpm
File outdated by:  RHBA-2013:0045
    MD5: 9686c5b7d653b1572c47ec5c9af8760f
SHA-256: e55c8011ee29fbabc3e3dfa73f88c51b99d33a6924bcf175051ae11d6c88898d
python-devel-2.4.3-44.el5.s390x.rpm
File outdated by:  RHBA-2013:0045
    MD5: 8123dbbd115b566c4df45558a671855b
SHA-256: 21aaddec076804ffc7f9d384fe977931a86bb5d9ce9c56617b20c59fec70c229
python-libs-2.4.3-44.el5.s390x.rpm
File outdated by:  RHBA-2013:0045
    MD5: b52d82557781632104e86bc0b832c7cd
SHA-256: d1e6494bc138361b8f9cb56b21dd70994c79b307cac8607e7babe8264d3a3ead
python-tools-2.4.3-44.el5.s390x.rpm
File outdated by:  RHBA-2013:0045
    MD5: 41a2c56bcb2414be5ba0f35cd9a5e446
SHA-256: e2060ff22360c3c2edff25a281f540db01424b7a555a08a521260203e9b21e2c
tkinter-2.4.3-44.el5.s390x.rpm
File outdated by:  RHBA-2013:0045
    MD5: 9bf3ebcb5bd0926adca491a3cd39c04e
SHA-256: 0f02edbd685029382a2bd700cd59b8385a2a479a41fdc8d265ab88122552aaec
 
x86_64:
python-2.4.3-44.el5.x86_64.rpm
File outdated by:  RHBA-2013:0045
    MD5: 3a090fcadb02ce636e40b58dc71434a7
SHA-256: 0be52e630ad7eee33d955e892eb01837fefcc76104e813bd0398af502a33585f
python-devel-2.4.3-44.el5.i386.rpm
File outdated by:  RHBA-2013:0045
    MD5: 7d48fcfcfc58d1697e2e1ea8e709de0d
SHA-256: b0141b9fb994d0ed8b7a8e02a5ddf2802ec020685ce5e04be7275abdcea6405f
python-devel-2.4.3-44.el5.x86_64.rpm
File outdated by:  RHBA-2013:0045
    MD5: e0e54d2301b87c2be38d48e0a5e053e0
SHA-256: 843800ebc174efa71a591337e57850a18639565ec76fd59938538c43606517db
python-libs-2.4.3-44.el5.x86_64.rpm
File outdated by:  RHBA-2013:0045
    MD5: a7f2a46f88d2b0ad9afd2b0b3bf60c9c
SHA-256: 5e5d86318abe2a9009e8e4165ac537bc82133810a161b75339888120013d2117
python-tools-2.4.3-44.el5.x86_64.rpm
File outdated by:  RHBA-2013:0045
    MD5: b0b31bf631993aa6b4105ba59e975ee4
SHA-256: 50149b58a94a19d97d5b4e7a942aad6db91d4b81f9ad549e93a36ed448ed3dc6
tkinter-2.4.3-44.el5.x86_64.rpm
File outdated by:  RHBA-2013:0045
    MD5: 8a842b1e4baa1e571f5e93f7a3e8dfb5
SHA-256: cfea6cb43a1569e2d651663a2b5e439c39eb7b52572ceede7eddd5d54224e0af
 
Red Hat Enterprise Linux Desktop (v. 5 client)

SRPMS:
python-2.4.3-44.el5.src.rpm
File outdated by:  RHBA-2013:0045
    MD5: 792d89d150497f1a754b6330f29b6c20
SHA-256: 7417fd859790aca9a37774378b5fc20ffc53fdf4d25e2d303f47e9c859beed36
 
IA-32:
python-2.4.3-44.el5.i386.rpm
File outdated by:  RHBA-2013:0045
    MD5: a0e97923b77a2e8e9c2b303eef02b817
SHA-256: ba4700caf699ce07adbcf61c6571a941a374631fd07d22afd658a4d23b6bc3d4
python-libs-2.4.3-44.el5.i386.rpm
File outdated by:  RHBA-2013:0045
    MD5: 661d2fb62751fc3c1c27a22fb011be70
SHA-256: 92f63691de167e3f63e357d28bbfcba3916881542f8c912c43d6772c934f1275
python-tools-2.4.3-44.el5.i386.rpm
File outdated by:  RHBA-2013:0045
    MD5: 401d3f08a7e04857e6332e927c50d394
SHA-256: eb650b2d09aaa69e46e3a02622a90ec26a9eca66cf6b62a5c2e66ce73ce69d14
tkinter-2.4.3-44.el5.i386.rpm
File outdated by:  RHBA-2013:0045
    MD5: 7a57cda81f95bfa8e5335066406edb80
SHA-256: 72c86d73ef60a7936518a5afa58f61675fda0a9fa67184ea3252bab8ba561cd5
 
x86_64:
python-2.4.3-44.el5.x86_64.rpm
File outdated by:  RHBA-2013:0045
    MD5: 3a090fcadb02ce636e40b58dc71434a7
SHA-256: 0be52e630ad7eee33d955e892eb01837fefcc76104e813bd0398af502a33585f
python-libs-2.4.3-44.el5.x86_64.rpm
File outdated by:  RHBA-2013:0045
    MD5: a7f2a46f88d2b0ad9afd2b0b3bf60c9c
SHA-256: 5e5d86318abe2a9009e8e4165ac537bc82133810a161b75339888120013d2117
python-tools-2.4.3-44.el5.x86_64.rpm
File outdated by:  RHBA-2013:0045
    MD5: b0b31bf631993aa6b4105ba59e975ee4
SHA-256: 50149b58a94a19d97d5b4e7a942aad6db91d4b81f9ad549e93a36ed448ed3dc6
tkinter-2.4.3-44.el5.x86_64.rpm
File outdated by:  RHBA-2013:0045
    MD5: 8a842b1e4baa1e571f5e93f7a3e8dfb5
SHA-256: cfea6cb43a1569e2d651663a2b5e439c39eb7b52572ceede7eddd5d54224e0af
 
Red Hat Enterprise Linux EUS (v. 5.6.z server)

SRPMS:
python-2.4.3-44.el5.src.rpm
File outdated by:  RHBA-2013:0045
    MD5: 792d89d150497f1a754b6330f29b6c20
SHA-256: 7417fd859790aca9a37774378b5fc20ffc53fdf4d25e2d303f47e9c859beed36
 
IA-32:
python-2.4.3-44.el5.i386.rpm     MD5: a0e97923b77a2e8e9c2b303eef02b817
SHA-256: ba4700caf699ce07adbcf61c6571a941a374631fd07d22afd658a4d23b6bc3d4
python-devel-2.4.3-44.el5.i386.rpm     MD5: 7d48fcfcfc58d1697e2e1ea8e709de0d
SHA-256: b0141b9fb994d0ed8b7a8e02a5ddf2802ec020685ce5e04be7275abdcea6405f
python-libs-2.4.3-44.el5.i386.rpm     MD5: 661d2fb62751fc3c1c27a22fb011be70
SHA-256: 92f63691de167e3f63e357d28bbfcba3916881542f8c912c43d6772c934f1275
python-tools-2.4.3-44.el5.i386.rpm     MD5: 401d3f08a7e04857e6332e927c50d394
SHA-256: eb650b2d09aaa69e46e3a02622a90ec26a9eca66cf6b62a5c2e66ce73ce69d14
tkinter-2.4.3-44.el5.i386.rpm     MD5: 7a57cda81f95bfa8e5335066406edb80
SHA-256: 72c86d73ef60a7936518a5afa58f61675fda0a9fa67184ea3252bab8ba561cd5
 
IA-64:
python-2.4.3-44.el5.ia64.rpm     MD5: 645080f57c9730023ab4f35f4ecf99ba
SHA-256: 0a872c5234781faf56a1db5a5aab0c1144d5a785f91a493931b1eb3eb17c2ef2
python-devel-2.4.3-44.el5.ia64.rpm     MD5: d714ed789c7f07cff9bca91db0b4ac01
SHA-256: 12fca2b6e0f1d223229d4b2277dae5d642d2e55851d030d5d105bd3fb25eb344
python-libs-2.4.3-44.el5.i386.rpm     MD5: 661d2fb62751fc3c1c27a22fb011be70
SHA-256: 92f63691de167e3f63e357d28bbfcba3916881542f8c912c43d6772c934f1275
python-libs-2.4.3-44.el5.ia64.rpm     MD5: 5a41d093e44a2d382ce369a9412a8e85
SHA-256: c72e9b6e89e6133b37c60770dfbf6aeeea3a86c7ce6711871931ba367072f069
python-tools-2.4.3-44.el5.ia64.rpm     MD5: bfdeb9a903487473cf0d1e979be8687a
SHA-256: 4f432194e24c0fa96ca1972c89606572a6ebe011c5ff0874c349712f29d784a3
tkinter-2.4.3-44.el5.ia64.rpm     MD5: 415144a70820067ba6ae74031e89c773
SHA-256: 5fb086d68fd55cc1a13d4a7d57bf2980340fd8fa8e998cbe8bfbf1cf572d93ee
 
PPC:
python-2.4.3-44.el5.ppc.rpm     MD5: b2a87454d53f149fb678e504480812c4
SHA-256: 0315f39e6e5532f559ae0adcc41aae6b0e515221b988ed6c0e5245840560fd7f
python-devel-2.4.3-44.el5.ppc.rpm     MD5: 44455ffef35c93591107a664561a3c42
SHA-256: 26877f70389c47268df2face1c707f835d0b3bfff7fdf927363c7e6aac6ebcc2
python-devel-2.4.3-44.el5.ppc64.rpm     MD5: 0563449b568e071c20dbc585ce819894
SHA-256: 6052affbb6064f324e9d3e5cc0817ee929a970e0af5b0b9daa90fe1783665316
python-libs-2.4.3-44.el5.ppc.rpm     MD5: 3a32b7db6af12e0aecf8582a9408604f
SHA-256: b24404df9941106739f7daa81c1b88884ab9e339ac97aad0bebaa4a56a428636
python-libs-2.4.3-44.el5.ppc64.rpm     MD5: 988a524a05335fcfce506e24c012e8df
SHA-256: a8ce610cac20d543d87573c48e62e1b555d86026b199d27454399fe263385172
python-tools-2.4.3-44.el5.ppc.rpm     MD5: 7a909667f34441f7eae2acdc141427b3
SHA-256: fafced147bf1005224d401f23db0a3fb61229b1eb8a5e96b5110dc27a1901117
tkinter-2.4.3-44.el5.ppc.rpm     MD5: 5467e8a17d24c64465e0eae5d5d20e5b
SHA-256: 0e5aac819804449b4cf75c258b8b43cc414a8a7e8a2bfa1a11379417db216197
 
s390x:
python-2.4.3-44.el5.s390x.rpm     MD5: 2721535d03755fd711b42d217e7c51d7
SHA-256: bd245c72b372638a374d9c1c5933fd63753247603400792fe412f02a58a6250b
python-devel-2.4.3-44.el5.s390.rpm     MD5: 9686c5b7d653b1572c47ec5c9af8760f
SHA-256: e55c8011ee29fbabc3e3dfa73f88c51b99d33a6924bcf175051ae11d6c88898d
python-devel-2.4.3-44.el5.s390x.rpm     MD5: 8123dbbd115b566c4df45558a671855b
SHA-256: 21aaddec076804ffc7f9d384fe977931a86bb5d9ce9c56617b20c59fec70c229
python-libs-2.4.3-44.el5.s390x.rpm     MD5: b52d82557781632104e86bc0b832c7cd
SHA-256: d1e6494bc138361b8f9cb56b21dd70994c79b307cac8607e7babe8264d3a3ead
python-tools-2.4.3-44.el5.s390x.rpm     MD5: 41a2c56bcb2414be5ba0f35cd9a5e446
SHA-256: e2060ff22360c3c2edff25a281f540db01424b7a555a08a521260203e9b21e2c
tkinter-2.4.3-44.el5.s390x.rpm     MD5: 9bf3ebcb5bd0926adca491a3cd39c04e
SHA-256: 0f02edbd685029382a2bd700cd59b8385a2a479a41fdc8d265ab88122552aaec
 
x86_64:
python-2.4.3-44.el5.x86_64.rpm     MD5: 3a090fcadb02ce636e40b58dc71434a7
SHA-256: 0be52e630ad7eee33d955e892eb01837fefcc76104e813bd0398af502a33585f
python-devel-2.4.3-44.el5.i386.rpm     MD5: 7d48fcfcfc58d1697e2e1ea8e709de0d
SHA-256: b0141b9fb994d0ed8b7a8e02a5ddf2802ec020685ce5e04be7275abdcea6405f
python-devel-2.4.3-44.el5.x86_64.rpm     MD5: e0e54d2301b87c2be38d48e0a5e053e0
SHA-256: 843800ebc174efa71a591337e57850a18639565ec76fd59938538c43606517db
python-libs-2.4.3-44.el5.x86_64.rpm     MD5: a7f2a46f88d2b0ad9afd2b0b3bf60c9c
SHA-256: 5e5d86318abe2a9009e8e4165ac537bc82133810a161b75339888120013d2117
python-tools-2.4.3-44.el5.x86_64.rpm     MD5: b0b31bf631993aa6b4105ba59e975ee4
SHA-256: 50149b58a94a19d97d5b4e7a942aad6db91d4b81f9ad549e93a36ed448ed3dc6
tkinter-2.4.3-44.el5.x86_64.rpm     MD5: 8a842b1e4baa1e571f5e93f7a3e8dfb5
SHA-256: cfea6cb43a1569e2d651663a2b5e439c39eb7b52572ceede7eddd5d54224e0af
 
Red Hat Enterprise Linux Long Life (v. 5.6 server)

SRPMS:
python-2.4.3-44.el5.src.rpm
File outdated by:  RHBA-2013:0045
    MD5: 792d89d150497f1a754b6330f29b6c20
SHA-256: 7417fd859790aca9a37774378b5fc20ffc53fdf4d25e2d303f47e9c859beed36
 
IA-32:
python-2.4.3-44.el5.i386.rpm     MD5: a0e97923b77a2e8e9c2b303eef02b817
SHA-256: ba4700caf699ce07adbcf61c6571a941a374631fd07d22afd658a4d23b6bc3d4
python-devel-2.4.3-44.el5.i386.rpm     MD5: 7d48fcfcfc58d1697e2e1ea8e709de0d
SHA-256: b0141b9fb994d0ed8b7a8e02a5ddf2802ec020685ce5e04be7275abdcea6405f
python-libs-2.4.3-44.el5.i386.rpm     MD5: 661d2fb62751fc3c1c27a22fb011be70
SHA-256: 92f63691de167e3f63e357d28bbfcba3916881542f8c912c43d6772c934f1275
python-tools-2.4.3-44.el5.i386.rpm     MD5: 401d3f08a7e04857e6332e927c50d394
SHA-256: eb650b2d09aaa69e46e3a02622a90ec26a9eca66cf6b62a5c2e66ce73ce69d14
tkinter-2.4.3-44.el5.i386.rpm     MD5: 7a57cda81f95bfa8e5335066406edb80
SHA-256: 72c86d73ef60a7936518a5afa58f61675fda0a9fa67184ea3252bab8ba561cd5
 
IA-64:
python-2.4.3-44.el5.ia64.rpm     MD5: 645080f57c9730023ab4f35f4ecf99ba
SHA-256: 0a872c5234781faf56a1db5a5aab0c1144d5a785f91a493931b1eb3eb17c2ef2
python-devel-2.4.3-44.el5.ia64.rpm     MD5: d714ed789c7f07cff9bca91db0b4ac01
SHA-256: 12fca2b6e0f1d223229d4b2277dae5d642d2e55851d030d5d105bd3fb25eb344
python-libs-2.4.3-44.el5.i386.rpm     MD5: 661d2fb62751fc3c1c27a22fb011be70
SHA-256: 92f63691de167e3f63e357d28bbfcba3916881542f8c912c43d6772c934f1275
python-libs-2.4.3-44.el5.ia64.rpm     MD5: 5a41d093e44a2d382ce369a9412a8e85
SHA-256: c72e9b6e89e6133b37c60770dfbf6aeeea3a86c7ce6711871931ba367072f069
python-tools-2.4.3-44.el5.ia64.rpm     MD5: bfdeb9a903487473cf0d1e979be8687a
SHA-256: 4f432194e24c0fa96ca1972c89606572a6ebe011c5ff0874c349712f29d784a3
tkinter-2.4.3-44.el5.ia64.rpm     MD5: 415144a70820067ba6ae74031e89c773
SHA-256: 5fb086d68fd55cc1a13d4a7d57bf2980340fd8fa8e998cbe8bfbf1cf572d93ee
 
x86_64:
python-2.4.3-44.el5.x86_64.rpm     MD5: 3a090fcadb02ce636e40b58dc71434a7
SHA-256: 0be52e630ad7eee33d955e892eb01837fefcc76104e813bd0398af502a33585f
python-devel-2.4.3-44.el5.i386.rpm     MD5: 7d48fcfcfc58d1697e2e1ea8e709de0d
SHA-256: b0141b9fb994d0ed8b7a8e02a5ddf2802ec020685ce5e04be7275abdcea6405f
python-devel-2.4.3-44.el5.x86_64.rpm     MD5: e0e54d2301b87c2be38d48e0a5e053e0
SHA-256: 843800ebc174efa71a591337e57850a18639565ec76fd59938538c43606517db
python-libs-2.4.3-44.el5.x86_64.rpm     MD5: a7f2a46f88d2b0ad9afd2b0b3bf60c9c
SHA-256: 5e5d86318abe2a9009e8e4165ac537bc82133810a161b75339888120013d2117
python-tools-2.4.3-44.el5.x86_64.rpm     MD5: b0b31bf631993aa6b4105ba59e975ee4
SHA-256: 50149b58a94a19d97d5b4e7a942aad6db91d4b81f9ad549e93a36ed448ed3dc6
tkinter-2.4.3-44.el5.x86_64.rpm     MD5: 8a842b1e4baa1e571f5e93f7a3e8dfb5
SHA-256: cfea6cb43a1569e2d651663a2b5e439c39eb7b52572ceede7eddd5d54224e0af
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

531697 - CVE-2009-3720 expat: buffer over-read and crash on XML with malformed UTF-8 sequences
632200 - CVE-2010-3493 Python: SMTP proxy RFC 2821 module DoS (uncaught exception) (Issue #9129)
680094 - CVE-2011-1015 python (CGIHTTPServer): CGI script source code disclosure
690560 - CVE-2011-1521 python (urllib, urllib2): Improper management of ftp:// and file:// URL schemes (Issue #11662)


References



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/