--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2019-0d3fcae639
2019-11-09 21:19:32.241680
--------------------------------------------------------------------------------
Name : python2
Product : Fedora 31
Version : 2.7.17
Release : 1.fc31
URL :
https://www.python.org/
Summary : An interpreted, interactive, object-oriented programming language
Description :
Python 2 is an old version of the language that is incompatible with the 3.x
line of releases. The language is mostly the same, but many details, especially
how built-in objects like dictionaries and strings work, have changed
considerably, and a lot of deprecated features have finally been removed in the
3.x line.
Note that documentation for Python 2 is provided in the python2-docs
package.
This package provides the "python2" executable; most of the actual
implementation is within the "python2-libs" package.
--------------------------------------------------------------------------------
Update Information:
Python 2.7.17 is a bug fix release in the Python 2.7.x series. It is expected to
be the penultimate release for Python 2.7.
https://www.python.org/downloads/release/python-2717/ - Security fix for
CVE-2018-20852. - Security fix for CVE-2019-16056. - Security fix for
CVE-2019-16935.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Oct 20 2019 Miro Hron��ok <mhroncok(a)redhat.com> - 2.7.17-1
- Update to 2.7.17
* Wed Oct 9 2019 Miro Hron��ok <mhroncok(a)redhat.com> - 2.7.17~rc1-1
- Rebase to 2.7.17rc1
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1763229 - CVE-2019-16935 python: XSS vulnerability in the documentation
XML-RPC server in server_title field
https://bugzilla.redhat.com/show_bug.cgi?id=1763229
[ 2 ] Bug #1749839 - CVE-2019-16056 python: email.utils.parseaddr wrongly parses email
addresses
https://bugzilla.redhat.com/show_bug.cgi?id=1749839
[ 3 ] Bug #1740347 - CVE-2018-20852 python: Cookie domain check returns incorrect
results
https://bugzilla.redhat.com/show_bug.cgi?id=1740347
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2019-0d3fcae639' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------