UbuntuUpdates.org

Package "python3.8-full"

Name: python3.8-full

Description:

Python Interpreter with complete class library (version 3.8)

Latest version: 3.8.10-0ubuntu1~20.04.1
Release: focal (20.04)
Level: updates
Repository: universe
Head package: python3.8

Links


Download "python3.8-full"


Other versions of "python3.8-full" in Focal

Repository Area Version
security universe 3.8.10-0ubuntu1~20.04.1

Changelog

Version: 3.8.2-1ubuntu1.2 2020-07-22 16:07:09 UTC

  python3.8 (3.8.2-1ubuntu1.2) focal-security; urgency=medium

  * SECURITY UPDATE: Infinite loop
    - debian/patches/CVE-2019-20907.patch: avoid infinite loop in the
      tarfile module in Lib/tarfile.py, Lib/test/test_tarfile.py and add
      Lib/test/recursion.tar binary for test.
    - CVE-2019-20907
  * SECURITY UPDATE: Denial of service
    - debian/patches/CVE-2020-14422.patch: Resolve hash collisions for
      IPv4Interface and IPv6Interface in Lib/ipaddress.py,
      Lib/test/test_ipaddress.py.
    - CVE-2020-14422

 -- <email address hidden> (Leonidas S. Barbosa) Thu, 16 Jul 2020 11:00:26 -0300

Source diff to previous version
CVE-2019-20907 In Lib/tarfile.py in Python through 3.8.3, an attacker is able to craft a TAR archive leading to an infinite loop when opened by tarfile.open, becaus
CVE-2020-14422 Lib/ipaddress.py in Python through 3.8.3 improperly computes hash values in the IPv4Interface and IPv6Interface classes, which might allow a remote a

Version: 3.8.2-1ubuntu1.1 2020-04-30 13:07:08 UTC
No changelog available yet.



About   -   Send Feedback to @ubuntu_updates