[ALSA-2019:0984] Moderate: python36:3.6 security update
Type:
security
Severity:
moderate
Release date:
2019-05-07
Description:
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. SQLAlchemy is an Object Relational Mapper (ORM) that provides a flexible, high-level interface to SQL databases. Security Fix(es): * python-sqlalchemy: SQL Injection when the order_by parameter can be controlled (CVE-2019-7164) * python-sqlalchemy: SQL Injection when the group_by parameter can be controlled (CVE-2019-7548) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
noarch python3-docs-3.6.7-2.module_el8.5.0+2569+5c5719bc.noarch.rpm 5482a562a679368b14cff62291a084baa1d9db9351f406e0bb7247b7aceb9d9c
noarch python3-docutils-0.14-12.module_el8.5.0+2569+5c5719bc.noarch.rpm 9373a7982ca84895771b36205f4af94c0688807e1af5e908470ed747486f6b15
noarch python3-docs-3.6.7-2.module_el8.5.0+135+5ce32bc4.noarch.rpm a0b49c40df8ed24c7559d6a75bac328c7e6d6f6709c88b4f983837303ac807e7
noarch python3-docutils-0.14-12.module_el8.5.0+135+5ce32bc4.noarch.rpm cf17ace7f7baa68bfc8b4ade60b729054ebc4dc785f87bbf5e0be36e9236a00b
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.