Protect yourself against future threats.
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 =========================================================================== AUSCERT External Security Bulletin Redistribution ESB-2021.3813 python39:3.9 and python39-devel:3.9 security update 10 November 2021 =========================================================================== AusCERT Security Bulletin Summary --------------------------------- Product: python39:3.9 and python39-devel:3.9 Publisher: Red Hat Operating System: Red Hat Impact/Access: Denial of Service -- Remote/Unauthenticated Cross-site Scripting -- Remote with User Interaction Unauthorised Access -- Remote/Unauthenticated Access Confidential Data -- Existing Account Reduced Security -- Existing Account Resolution: Patch/Upgrade CVE Names: CVE-2021-33503 CVE-2021-29921 CVE-2021-28957 CVE-2021-3737 CVE-2021-3733 CVE-2021-3572 CVE-2021-3426 Reference: ASB-2021.0144 ESB-2021.3761 ESB-2021.3752 ESB-2021.3718 ESB-2021.3700 Original Bulletin: https://access.redhat.com/errata/RHSA-2021:4160 - --------------------------BEGIN INCLUDED TEXT-------------------- - -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ===================================================================== Red Hat Security Advisory Synopsis: Moderate: python39:3.9 and python39-devel:3.9 security update Advisory ID: RHSA-2021:4160-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2021:4160 Issue date: 2021-11-09 CVE Names: CVE-2021-3426 CVE-2021-3572 CVE-2021-3733 CVE-2021-3737 CVE-2021-28957 CVE-2021-29921 CVE-2021-33503 ===================================================================== 1. Summary: An update for the python39:3.9 and python39-devel:3.9 modules is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 8) - aarch64, noarch, ppc64le, s390x, x86_64 Red Hat Enterprise Linux CRB (v. 8) - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * python: Information disclosure via pydoc (CVE-2021-3426) * python: urllib: Regular expression DoS in AbstractBasicAuthHandler (CVE-2021-3733) * python-lxml: Missing input sanitization for formaction HTML5 attributes may lead to XSS (CVE-2021-28957) * python-ipaddress: Improper input validation of octal strings (CVE-2021-29921) * python-urllib3: ReDoS in the parsing of authority part of URL (CVE-2021-33503) * python-pip: Incorrect handling of unicode separators in git references (CVE-2021-3572) * python: urllib: HTTP client possible infinite loop on a 100 Continue response (CVE-2021-3737) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.5 Release Notes linked from the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1935913 - CVE-2021-3426 python: Information disclosure via pydoc 1941534 - CVE-2021-28957 python-lxml: Missing input sanitization for formaction HTML5 attributes may lead to XSS 1957458 - CVE-2021-29921 python-ipaddress: Improper input validation of octal strings 1962856 - CVE-2021-3572 python-pip: Incorrect handling of unicode separators in git references 1968074 - CVE-2021-33503 python-urllib3: ReDoS in the parsing of authority part of URL 1995162 - CVE-2021-3737 python: urllib: HTTP client possible infinite loop on a 100 Continue response 1995234 - CVE-2021-3733 python: urllib: Regular expression DoS in AbstractBasicAuthHandler 6. Package List: Red Hat Enterprise Linux AppStream (v. 8): Source: PyYAML-5.4.1-1.module+el8.5.0+10613+59a13ec4.src.rpm mod_wsgi-4.7.1-4.module+el8.4.0+9822+20bf1249.src.rpm numpy-1.19.4-3.module+el8.5.0+12204+54860423.src.rpm python-PyMySQL-0.10.1-2.module+el8.4.0+9822+20bf1249.src.rpm python-cffi-1.14.3-2.module+el8.4.0+9822+20bf1249.src.rpm python-chardet-3.0.4-19.module+el8.4.0+9822+20bf1249.src.rpm python-cryptography-3.3.1-2.module+el8.4.0+9822+20bf1249.src.rpm python-idna-2.10-3.module+el8.4.0+9822+20bf1249.src.rpm python-lxml-4.6.2-3.module+el8.5.0+10536+a233b742.src.rpm python-ply-3.11-10.module+el8.4.0+9822+20bf1249.src.rpm python-psutil-5.8.0-4.module+el8.4.0+9822+20bf1249.src.rpm python-psycopg2-2.8.6-2.module+el8.4.0+9822+20bf1249.src.rpm python-pycparser-2.20-3.module+el8.4.0+9822+20bf1249.src.rpm python-pysocks-1.7.1-4.module+el8.4.0+9822+20bf1249.src.rpm python-requests-2.25.0-2.module+el8.4.0+9822+20bf1249.src.rpm python-toml-0.10.1-5.module+el8.4.0+9822+20bf1249.src.rpm python-urllib3-1.25.10-4.module+el8.5.0+11712+ea2d2be1.src.rpm python-wheel-0.35.1-4.module+el8.5.0+12204+54860423.src.rpm python39-3.9.6-2.module+el8.5.0+12204+54860423.src.rpm python3x-pip-20.2.4-6.module+el8.5.0+12204+54860423.src.rpm python3x-setuptools-50.3.2-4.module+el8.5.0+12204+54860423.src.rpm python3x-six-1.15.0-3.module+el8.4.0+9822+20bf1249.src.rpm scipy-1.5.4-3.module+el8.4.0+9822+20bf1249.src.rpm aarch64: PyYAML-debugsource-5.4.1-1.module+el8.5.0+10613+59a13ec4.aarch64.rpm numpy-debugsource-1.19.4-3.module+el8.5.0+12204+54860423.aarch64.rpm python-cffi-debugsource-1.14.3-2.module+el8.4.0+9822+20bf1249.aarch64.rpm python-cryptography-debugsource-3.3.1-2.module+el8.4.0+9822+20bf1249.aarch64.rpm python-lxml-debugsource-4.6.2-3.module+el8.5.0+10536+a233b742.aarch64.rpm python-psutil-debugsource-5.8.0-4.module+el8.4.0+9822+20bf1249.aarch64.rpm python-psycopg2-debugsource-2.8.6-2.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-3.9.6-2.module+el8.5.0+12204+54860423.aarch64.rpm python39-cffi-1.14.3-2.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-cffi-debuginfo-1.14.3-2.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-cryptography-3.3.1-2.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-cryptography-debuginfo-3.3.1-2.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-debuginfo-3.9.6-2.module+el8.5.0+12204+54860423.aarch64.rpm python39-debugsource-3.9.6-2.module+el8.5.0+12204+54860423.aarch64.rpm python39-devel-3.9.6-2.module+el8.5.0+12204+54860423.aarch64.rpm python39-idle-3.9.6-2.module+el8.5.0+12204+54860423.aarch64.rpm python39-libs-3.9.6-2.module+el8.5.0+12204+54860423.aarch64.rpm python39-lxml-4.6.2-3.module+el8.5.0+10536+a233b742.aarch64.rpm python39-lxml-debuginfo-4.6.2-3.module+el8.5.0+10536+a233b742.aarch64.rpm python39-mod_wsgi-4.7.1-4.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-numpy-1.19.4-3.module+el8.5.0+12204+54860423.aarch64.rpm python39-numpy-debuginfo-1.19.4-3.module+el8.5.0+12204+54860423.aarch64.rpm python39-numpy-f2py-1.19.4-3.module+el8.5.0+12204+54860423.aarch64.rpm python39-psutil-5.8.0-4.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-psutil-debuginfo-5.8.0-4.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-psycopg2-2.8.6-2.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-psycopg2-debuginfo-2.8.6-2.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-psycopg2-doc-2.8.6-2.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-psycopg2-tests-2.8.6-2.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-pyyaml-5.4.1-1.module+el8.5.0+10613+59a13ec4.aarch64.rpm python39-pyyaml-debuginfo-5.4.1-1.module+el8.5.0+10613+59a13ec4.aarch64.rpm python39-scipy-1.5.4-3.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-scipy-debuginfo-1.5.4-3.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-test-3.9.6-2.module+el8.5.0+12204+54860423.aarch64.rpm python39-tkinter-3.9.6-2.module+el8.5.0+12204+54860423.aarch64.rpm scipy-debugsource-1.5.4-3.module+el8.4.0+9822+20bf1249.aarch64.rpm noarch: python39-PyMySQL-0.10.1-2.module+el8.4.0+9822+20bf1249.noarch.rpm python39-chardet-3.0.4-19.module+el8.4.0+9822+20bf1249.noarch.rpm python39-idna-2.10-3.module+el8.4.0+9822+20bf1249.noarch.rpm python39-numpy-doc-1.19.4-3.module+el8.5.0+12204+54860423.noarch.rpm python39-pip-20.2.4-6.module+el8.5.0+12204+54860423.noarch.rpm python39-pip-wheel-20.2.4-6.module+el8.5.0+12204+54860423.noarch.rpm python39-ply-3.11-10.module+el8.4.0+9822+20bf1249.noarch.rpm python39-pycparser-2.20-3.module+el8.4.0+9822+20bf1249.noarch.rpm python39-pysocks-1.7.1-4.module+el8.4.0+9822+20bf1249.noarch.rpm python39-requests-2.25.0-2.module+el8.4.0+9822+20bf1249.noarch.rpm python39-rpm-macros-3.9.6-2.module+el8.5.0+12204+54860423.noarch.rpm python39-setuptools-50.3.2-4.module+el8.5.0+12204+54860423.noarch.rpm python39-setuptools-wheel-50.3.2-4.module+el8.5.0+12204+54860423.noarch.rpm python39-six-1.15.0-3.module+el8.4.0+9822+20bf1249.noarch.rpm python39-toml-0.10.1-5.module+el8.4.0+9822+20bf1249.noarch.rpm python39-urllib3-1.25.10-4.module+el8.5.0+11712+ea2d2be1.noarch.rpm python39-wheel-0.35.1-4.module+el8.5.0+12204+54860423.noarch.rpm python39-wheel-wheel-0.35.1-4.module+el8.5.0+12204+54860423.noarch.rpm ppc64le: PyYAML-debugsource-5.4.1-1.module+el8.5.0+10613+59a13ec4.ppc64le.rpm numpy-debugsource-1.19.4-3.module+el8.5.0+12204+54860423.ppc64le.rpm python-cffi-debugsource-1.14.3-2.module+el8.4.0+9822+20bf1249.ppc64le.rpm python-cryptography-debugsource-3.3.1-2.module+el8.4.0+9822+20bf1249.ppc64le.rpm python-lxml-debugsource-4.6.2-3.module+el8.5.0+10536+a233b742.ppc64le.rpm python-psutil-debugsource-5.8.0-4.module+el8.4.0+9822+20bf1249.ppc64le.rpm python-psycopg2-debugsource-2.8.6-2.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-3.9.6-2.module+el8.5.0+12204+54860423.ppc64le.rpm python39-cffi-1.14.3-2.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-cffi-debuginfo-1.14.3-2.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-cryptography-3.3.1-2.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-cryptography-debuginfo-3.3.1-2.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-debuginfo-3.9.6-2.module+el8.5.0+12204+54860423.ppc64le.rpm python39-debugsource-3.9.6-2.module+el8.5.0+12204+54860423.ppc64le.rpm python39-devel-3.9.6-2.module+el8.5.0+12204+54860423.ppc64le.rpm python39-idle-3.9.6-2.module+el8.5.0+12204+54860423.ppc64le.rpm python39-libs-3.9.6-2.module+el8.5.0+12204+54860423.ppc64le.rpm python39-lxml-4.6.2-3.module+el8.5.0+10536+a233b742.ppc64le.rpm python39-lxml-debuginfo-4.6.2-3.module+el8.5.0+10536+a233b742.ppc64le.rpm python39-mod_wsgi-4.7.1-4.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-numpy-1.19.4-3.module+el8.5.0+12204+54860423.ppc64le.rpm python39-numpy-debuginfo-1.19.4-3.module+el8.5.0+12204+54860423.ppc64le.rpm python39-numpy-f2py-1.19.4-3.module+el8.5.0+12204+54860423.ppc64le.rpm python39-psutil-5.8.0-4.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-psutil-debuginfo-5.8.0-4.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-psycopg2-2.8.6-2.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-psycopg2-debuginfo-2.8.6-2.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-psycopg2-doc-2.8.6-2.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-psycopg2-tests-2.8.6-2.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-pyyaml-5.4.1-1.module+el8.5.0+10613+59a13ec4.ppc64le.rpm python39-pyyaml-debuginfo-5.4.1-1.module+el8.5.0+10613+59a13ec4.ppc64le.rpm python39-scipy-1.5.4-3.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-scipy-debuginfo-1.5.4-3.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-test-3.9.6-2.module+el8.5.0+12204+54860423.ppc64le.rpm python39-tkinter-3.9.6-2.module+el8.5.0+12204+54860423.ppc64le.rpm scipy-debugsource-1.5.4-3.module+el8.4.0+9822+20bf1249.ppc64le.rpm s390x: PyYAML-debugsource-5.4.1-1.module+el8.5.0+10613+59a13ec4.s390x.rpm numpy-debugsource-1.19.4-3.module+el8.5.0+12204+54860423.s390x.rpm python-cffi-debugsource-1.14.3-2.module+el8.4.0+9822+20bf1249.s390x.rpm python-cryptography-debugsource-3.3.1-2.module+el8.4.0+9822+20bf1249.s390x.rpm python-lxml-debugsource-4.6.2-3.module+el8.5.0+10536+a233b742.s390x.rpm python-psutil-debugsource-5.8.0-4.module+el8.4.0+9822+20bf1249.s390x.rpm python-psycopg2-debugsource-2.8.6-2.module+el8.4.0+9822+20bf1249.s390x.rpm python39-3.9.6-2.module+el8.5.0+12204+54860423.s390x.rpm python39-cffi-1.14.3-2.module+el8.4.0+9822+20bf1249.s390x.rpm python39-cffi-debuginfo-1.14.3-2.module+el8.4.0+9822+20bf1249.s390x.rpm python39-cryptography-3.3.1-2.module+el8.4.0+9822+20bf1249.s390x.rpm python39-cryptography-debuginfo-3.3.1-2.module+el8.4.0+9822+20bf1249.s390x.rpm python39-debuginfo-3.9.6-2.module+el8.5.0+12204+54860423.s390x.rpm python39-debugsource-3.9.6-2.module+el8.5.0+12204+54860423.s390x.rpm python39-devel-3.9.6-2.module+el8.5.0+12204+54860423.s390x.rpm python39-idle-3.9.6-2.module+el8.5.0+12204+54860423.s390x.rpm python39-libs-3.9.6-2.module+el8.5.0+12204+54860423.s390x.rpm python39-lxml-4.6.2-3.module+el8.5.0+10536+a233b742.s390x.rpm python39-lxml-debuginfo-4.6.2-3.module+el8.5.0+10536+a233b742.s390x.rpm python39-mod_wsgi-4.7.1-4.module+el8.4.0+9822+20bf1249.s390x.rpm python39-numpy-1.19.4-3.module+el8.5.0+12204+54860423.s390x.rpm python39-numpy-debuginfo-1.19.4-3.module+el8.5.0+12204+54860423.s390x.rpm python39-numpy-f2py-1.19.4-3.module+el8.5.0+12204+54860423.s390x.rpm python39-psutil-5.8.0-4.module+el8.4.0+9822+20bf1249.s390x.rpm python39-psutil-debuginfo-5.8.0-4.module+el8.4.0+9822+20bf1249.s390x.rpm python39-psycopg2-2.8.6-2.module+el8.4.0+9822+20bf1249.s390x.rpm python39-psycopg2-debuginfo-2.8.6-2.module+el8.4.0+9822+20bf1249.s390x.rpm python39-psycopg2-doc-2.8.6-2.module+el8.4.0+9822+20bf1249.s390x.rpm python39-psycopg2-tests-2.8.6-2.module+el8.4.0+9822+20bf1249.s390x.rpm python39-pyyaml-5.4.1-1.module+el8.5.0+10613+59a13ec4.s390x.rpm python39-pyyaml-debuginfo-5.4.1-1.module+el8.5.0+10613+59a13ec4.s390x.rpm python39-scipy-1.5.4-3.module+el8.4.0+9822+20bf1249.s390x.rpm python39-scipy-debuginfo-1.5.4-3.module+el8.4.0+9822+20bf1249.s390x.rpm python39-test-3.9.6-2.module+el8.5.0+12204+54860423.s390x.rpm python39-tkinter-3.9.6-2.module+el8.5.0+12204+54860423.s390x.rpm scipy-debugsource-1.5.4-3.module+el8.4.0+9822+20bf1249.s390x.rpm x86_64: PyYAML-debugsource-5.4.1-1.module+el8.5.0+10613+59a13ec4.x86_64.rpm numpy-debugsource-1.19.4-3.module+el8.5.0+12204+54860423.x86_64.rpm python-cffi-debugsource-1.14.3-2.module+el8.4.0+9822+20bf1249.x86_64.rpm python-cryptography-debugsource-3.3.1-2.module+el8.4.0+9822+20bf1249.x86_64.rpm python-lxml-debugsource-4.6.2-3.module+el8.5.0+10536+a233b742.x86_64.rpm python-psutil-debugsource-5.8.0-4.module+el8.4.0+9822+20bf1249.x86_64.rpm python-psycopg2-debugsource-2.8.6-2.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-3.9.6-2.module+el8.5.0+12204+54860423.x86_64.rpm python39-cffi-1.14.3-2.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-cffi-debuginfo-1.14.3-2.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-cryptography-3.3.1-2.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-cryptography-debuginfo-3.3.1-2.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-debuginfo-3.9.6-2.module+el8.5.0+12204+54860423.x86_64.rpm python39-debugsource-3.9.6-2.module+el8.5.0+12204+54860423.x86_64.rpm python39-devel-3.9.6-2.module+el8.5.0+12204+54860423.x86_64.rpm python39-idle-3.9.6-2.module+el8.5.0+12204+54860423.x86_64.rpm python39-libs-3.9.6-2.module+el8.5.0+12204+54860423.x86_64.rpm python39-lxml-4.6.2-3.module+el8.5.0+10536+a233b742.x86_64.rpm python39-lxml-debuginfo-4.6.2-3.module+el8.5.0+10536+a233b742.x86_64.rpm python39-mod_wsgi-4.7.1-4.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-numpy-1.19.4-3.module+el8.5.0+12204+54860423.x86_64.rpm python39-numpy-debuginfo-1.19.4-3.module+el8.5.0+12204+54860423.x86_64.rpm python39-numpy-f2py-1.19.4-3.module+el8.5.0+12204+54860423.x86_64.rpm python39-psutil-5.8.0-4.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-psutil-debuginfo-5.8.0-4.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-psycopg2-2.8.6-2.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-psycopg2-debuginfo-2.8.6-2.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-psycopg2-doc-2.8.6-2.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-psycopg2-tests-2.8.6-2.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-pyyaml-5.4.1-1.module+el8.5.0+10613+59a13ec4.x86_64.rpm python39-pyyaml-debuginfo-5.4.1-1.module+el8.5.0+10613+59a13ec4.x86_64.rpm python39-scipy-1.5.4-3.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-scipy-debuginfo-1.5.4-3.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-test-3.9.6-2.module+el8.5.0+12204+54860423.x86_64.rpm python39-tkinter-3.9.6-2.module+el8.5.0+12204+54860423.x86_64.rpm scipy-debugsource-1.5.4-3.module+el8.4.0+9822+20bf1249.x86_64.rpm Red Hat Enterprise Linux CRB (v. 8): Source: Cython-0.29.21-5.module+el8.4.0+9822+20bf1249.src.rpm pybind11-2.6.1-2.module+el8.4.0+9822+20bf1249.src.rpm pytest-6.0.2-2.module+el8.4.0+9822+20bf1249.src.rpm python-attrs-20.3.0-2.module+el8.4.0+9822+20bf1249.src.rpm python-iniconfig-1.1.1-2.module+el8.4.0+9822+20bf1249.src.rpm python-more-itertools-8.5.0-2.module+el8.4.0+9822+20bf1249.src.rpm python-packaging-20.4-4.module+el8.4.0+9822+20bf1249.src.rpm python-pluggy-0.13.1-3.module+el8.4.0+9822+20bf1249.src.rpm python-py-1.10.0-1.module+el8.4.0+9822+20bf1249.src.rpm python-wcwidth-0.2.5-3.module+el8.4.0+9822+20bf1249.src.rpm python3x-pyparsing-2.4.7-5.module+el8.4.0+9822+20bf1249.src.rpm aarch64: Cython-debugsource-0.29.21-5.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-Cython-0.29.21-5.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-Cython-debuginfo-0.29.21-5.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-debug-3.9.6-2.module+el8.5.0+12204+54860423.aarch64.rpm python39-pybind11-2.6.1-2.module+el8.4.0+9822+20bf1249.aarch64.rpm python39-pybind11-devel-2.6.1-2.module+el8.4.0+9822+20bf1249.aarch64.rpm noarch: python39-attrs-20.3.0-2.module+el8.4.0+9822+20bf1249.noarch.rpm python39-iniconfig-1.1.1-2.module+el8.4.0+9822+20bf1249.noarch.rpm python39-more-itertools-8.5.0-2.module+el8.4.0+9822+20bf1249.noarch.rpm python39-packaging-20.4-4.module+el8.4.0+9822+20bf1249.noarch.rpm python39-pluggy-0.13.1-3.module+el8.4.0+9822+20bf1249.noarch.rpm python39-py-1.10.0-1.module+el8.4.0+9822+20bf1249.noarch.rpm python39-pyparsing-2.4.7-5.module+el8.4.0+9822+20bf1249.noarch.rpm python39-pytest-6.0.2-2.module+el8.4.0+9822+20bf1249.noarch.rpm python39-wcwidth-0.2.5-3.module+el8.4.0+9822+20bf1249.noarch.rpm ppc64le: Cython-debugsource-0.29.21-5.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-Cython-0.29.21-5.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-Cython-debuginfo-0.29.21-5.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-debug-3.9.6-2.module+el8.5.0+12204+54860423.ppc64le.rpm python39-pybind11-2.6.1-2.module+el8.4.0+9822+20bf1249.ppc64le.rpm python39-pybind11-devel-2.6.1-2.module+el8.4.0+9822+20bf1249.ppc64le.rpm s390x: Cython-debugsource-0.29.21-5.module+el8.4.0+9822+20bf1249.s390x.rpm python39-Cython-0.29.21-5.module+el8.4.0+9822+20bf1249.s390x.rpm python39-Cython-debuginfo-0.29.21-5.module+el8.4.0+9822+20bf1249.s390x.rpm python39-debug-3.9.6-2.module+el8.5.0+12204+54860423.s390x.rpm python39-pybind11-2.6.1-2.module+el8.4.0+9822+20bf1249.s390x.rpm python39-pybind11-devel-2.6.1-2.module+el8.4.0+9822+20bf1249.s390x.rpm x86_64: Cython-debugsource-0.29.21-5.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-Cython-0.29.21-5.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-Cython-debuginfo-0.29.21-5.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-debug-3.9.6-2.module+el8.5.0+12204+54860423.x86_64.rpm python39-pybind11-2.6.1-2.module+el8.4.0+9822+20bf1249.x86_64.rpm python39-pybind11-devel-2.6.1-2.module+el8.4.0+9822+20bf1249.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2021-3426 https://access.redhat.com/security/cve/CVE-2021-3572 https://access.redhat.com/security/cve/CVE-2021-3733 https://access.redhat.com/security/cve/CVE-2021-3737 https://access.redhat.com/security/cve/CVE-2021-28957 https://access.redhat.com/security/cve/CVE-2021-29921 https://access.redhat.com/security/cve/CVE-2021-33503 https://access.redhat.com/security/updates/classification/#moderate https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/8.5_release_notes/ 8. Contact: The Red Hat security contact is <secalert@redhat.com>. More contact details at https://access.redhat.com/security/team/contact/ Copyright 2021 Red Hat, Inc. - -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBYYreYNzjgjWX9erEAQg5JhAAgELdz0IlEn7dZG/chVvKDnnhrf0TtJI9 y1RyA85eI09xJiSGx0O9CjvZD+ZvqtzY4SjD08IS0bhNSw2VRTEwS8pKo2UBz4uU bA0SWmvxYgT0+lKnMTrnsa9uaR559ptxdiWbf5JhMesg3KBm1XQL8EcMJpmMc5dc u8LjpvKlORY5Lxw7rmZGlJJqkUfcu8IlviSrnC2eng6J6s9SE/vHXHyq1SVA9khU zCOphxcI+7qo1GZrn+5Tgy0IA4i9cnh8l6B2KuaXkpoZHV/b0jgNhbvkoEj4mAQi xZOJ1qOVwHW999Qft7yKqCuwBWEN9O9NMh3FtJkoZOMZ9h7sgbuoJI8GagYBmuk8 HLVF/yE1EWJJg6l5DqI7Whrbd+Ago7Fa5bjCdGLK9+JM/7wDjJlIcqcinH9+N3BJ RYZCvD+Vf7QKfjnamz7IkO5z4mSaSOORpWFAiwk9RC0aU+keHi/uxIfmxbN+jZTm cvkomLCYlHDhhX8KCdLSPV4oEK85+elUpb24oynD8oKfXhlJx9B3jNvTC92Pefkx UJxof+wlu7ltURYhYkEVGrbimUqDnG+LJAvyx+UyL+wB6HUaorPo1o2YcADzchIA 3d237NI0XkYXoDPfYUKTZPvfdIRfUIouGzPV6bKBZVnTHhIcNBJiZOB8D92PvaWc aXlyKRlF69I= =ym0F - -----END PGP SIGNATURE----- - --------------------------END INCLUDED TEXT-------------------- You have received this e-mail bulletin as a result of your organisation's registration with AusCERT. The mailing list you are subscribed to is maintained within your organisation, so if you do not wish to continue receiving these bulletins you should contact your local IT manager. If you do not know who that is, please send an email to auscert@auscert.org.au and we will forward your request to the appropriate person. NOTE: Third Party Rights This security bulletin is provided as a service to AusCERT's members. As AusCERT did not write the document quoted above, AusCERT has had no control over its content. The decision to follow or act on information or advice contained in this security bulletin is the responsibility of each user or organisation, and should be considered in accordance with your organisation's site policies and procedures. AusCERT takes no responsibility for consequences which may arise from following or acting on information or advice contained in this security bulletin. NOTE: This is only the original release of the security bulletin. It may not be updated when updates to the original are made. If downloading at a later date, it is recommended that the bulletin is retrieved directly from the author's website to ensure that the information is still current. Contact information for the authors of the original document is included in the Security Bulletin above. If you have any questions or need further information, please contact them directly. Previous advisories and external security bulletins can be retrieved from: https://www.auscert.org.au/bulletins/ =========================================================================== Australian Computer Emergency Response Team The University of Queensland Brisbane Qld 4072 Internet Email: auscert@auscert.org.au Facsimile: (07) 3365 7031 Telephone: (07) 3365 4417 (International: +61 7 3365 4417) AusCERT personnel answer during Queensland business hours which are GMT+10:00 (AEST). On call after hours for member emergencies only. =========================================================================== -----BEGIN PGP SIGNATURE----- Comment: http://www.auscert.org.au/render.html?it=1967 iQIVAwUBYYtfwuNLKJtyKPYoAQgzDQ//QhgeXtpQe4W2dtlHVljVkuPhPJKF+7sh xDrX7nQPjY78alu7Qz9d7Zv8ZrGbGbuYtElhx1aqtBS894fJ3GKuRTeAWwlwydXM 8ygQru0wqKzXWZpd61PhEw8w9JVJwOcVNkTfidjFHyI0dS4beavft3vf/e26EANs sNYbImbPjzQQwfe6VIEy97Lfo3EPcNdnTQM35X2GWrsj5lmKOgYEsCYqQs+5HqO+ t2M9CwvQhD9VengQbRP0hK/DuH6UwgAtpjx6oBqXmAntoN8V5EAdc4xhwtcqnZMz +tgNEfcgxTCU39Aa6VNE8Evd4LsJP4OdfXYWY5J4DJDWUvrFY0ptXut//if6mAf3 TkU6c4G2GrUZS7IMFkgrGBBqCYVRuXbIpINFs963ihVbYA7pBYRFnI+084DW/xFq uTef2zm6Gdouh50cVYL8X9Xj3VoaBYFz69fLiOYx0cukCxgxF7fB4AXhyCorrxdF zsGq14NZ0X3GkT+8PIcQK83HDEG2hVCRFqjr8Web3mBO8joIwReiSndEnSBel2by RdQKDmEQL7QhTfBNLnVXfDnYROr6sUhk295g3Mkd0VbUPS5emrQUsR4au1SRFjbw F//0mu94GbT9ipXS0GVwwmodN846Wj++i+OCKGdvhazhuRFc4120tYss4TureQu1 +whO3iak9Eo= =BY3D -----END PGP SIGNATURE-----