{"id":58139,"date":"2024-07-11T18:10:17","date_gmt":"2024-07-11T15:10:17","guid":{"rendered":"https:\/\/packetstormsecurity.com\/files\/179499\/USN-6891-1.txt"},"modified":"2024-07-11T18:10:17","modified_gmt":"2024-07-11T15:10:17","slug":"ubuntu-security-notice-usn-6891-1","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/ubuntu-security-notice-usn-6891-1\/","title":{"rendered":"Ubuntu Security Notice USN-6891-1"},"content":{"rendered":"<p>==========================================================================<br \/>Ubuntu Security Notice USN-6891-1<br \/>July 11, 2024<\/p>\n<p>python3.5, python3.6, python3.7, python3.8, python3.9, python3.10,<br \/>python3.11, python3.12 vulnerabilities<br \/>==========================================================================<\/p>\n<p>A security issue affects these releases of Ubuntu and its derivatives:<\/p>\n<p>&#8211; Ubuntu 23.10<br \/>&#8211; Ubuntu 22.04 LTS<br \/>&#8211; Ubuntu 20.04 LTS<br \/>&#8211; Ubuntu 18.04 LTS<br \/>&#8211; Ubuntu 16.04 LTS<br \/>&#8211; Ubuntu 14.04 LTS<\/p>\n<p>Summary:<\/p>\n<p>Several security issues were fixed in Python.<\/p>\n<p>Software Description:<br \/>&#8211; python3.11: An interactive high-level object-oriented language<br \/>&#8211; python3.12: Interactive high-level object-oriented language (version 3.12)<br \/>&#8211; python3.10: An interactive high-level object-oriented language<br \/>&#8211; python3.8: An interactive high-level object-oriented language<br \/>&#8211; python3.9: An interactive high-level object-oriented language<br \/>&#8211; python3.6: An interactive high-level object-oriented language<br \/>&#8211; python3.7: An interactive high-level object-oriented language<br \/>&#8211; python3.5: An interactive high-level object-oriented language<\/p>\n<p>Details:<\/p>\n<p>It was discovered that Python incorrectly handled certain inputs.<br \/>An attacker could possibly use this issue to execute arbitrary code.<br \/>This issue only affected Ubuntu 14.04 LTS and Ubuntu 18.04 LTS.<br \/>(CVE-2015-20107)<\/p>\n<p>It was discovered that Python incorrectly used regular expressions<br \/>vulnerable to catastrophic backtracking. A remote attacker could possibly<br \/>use this issue to cause a denial of service. This issue only affected<br \/>Ubuntu 14.04 LTS. (CVE-2018-1060, CVE-2018-1061)<\/p>\n<p>It was discovered that Python failed to initialize Expat\u2019s hash salt. A<br \/>remote attacker could possibly use this issue to cause hash collisions,<br \/>leading to a denial of service. This issue only affected Ubuntu 14.04 LTS.<br \/>(CVE-2018-14647)<\/p>\n<p>It was discovered that Python incorrectly handled certain pickle files. An<br \/>attacker could possibly use this issue to consume memory, leading to a<br \/>denial of service. This issue only affected Ubuntu 14.04 LTS.<br \/>(CVE-2018-20406)<\/p>\n<p>It was discovered that Python incorrectly validated the domain when<br \/>handling cookies. An attacker could possibly trick Python into sending<br \/>cookies to the wrong domain. This issue only affected Ubuntu 14.04 LTS.<br \/>(CVE-2018-20852)<\/p>\n<p>Jonathan Birch and Panayiotis Panayiotou discovered that Python incorrectly<br \/>handled Unicode encoding during NFKC normalization. An attacker could<br \/>possibly use this issue to obtain sensitive information. This issue only<br \/>affected Ubuntu 14.04 LTS. (CVE-2019-9636, CVE-2019-10160)<\/p>\n<p>It was discovered that Python incorrectly parsed certain email addresses. A<br \/>remote attacker could possibly use this issue to trick Python applications<br \/>into accepting email addresses that should be denied. This issue only<br \/>affected Ubuntu 14.04 LTS. (CVE-2019-16056)<\/p>\n<p>It was discovered that the Python documentation XML-RPC server incorrectly<br \/>handled certain fields. A remote attacker could use this issue to execute a<br \/>cross-site scripting (XSS) attack. This issue only affected Ubuntu 14.04<br \/>LTS. (CVE-2019-16935)<\/p>\n<p>It was discovered that Python documentation had a misleading information.<br \/>A security issue could be possibly caused by wrong assumptions of this<br \/>information. This issue only affected Ubuntu 14.04 LTS and Ubuntu 18.04<br \/>LTS. (CVE-2019-17514)<\/p>\n<p>It was discovered that Python incorrectly stripped certain characters from<br \/>requests. A remote attacker could use this issue to perform CRLF injection.<br \/>This issue only affected Ubuntu 14.04 LTS and Ubuntu 18.04 LTS.<br \/>(CVE-2019-18348)<\/p>\n<p>It was discovered that Python incorrectly handled certain TAR archives.<br \/>An attacker could possibly use this issue to cause a denial of service.<br \/>This issue only affected Ubuntu 14.04 LTS and Ubuntu 18.04 LTS.<br \/>(CVE-2019-20907)<\/p>\n<p>Colin Read and Nicolas Edet discovered that Python incorrectly handled<br \/>parsing certain X509 certificates. An attacker could possibly use this<br \/>issue to cause Python to crash, resulting in a denial of service. This<br \/>issue only affected Ubuntu 14.04 LTS. (CVE-2019-5010)<\/p>\n<p>It was discovered that incorrectly handled certain ZIP files. An attacker<br \/>could possibly use this issue to cause a denial of service. This issue only<br \/>affected Ubuntu 14.04 LTS. (CVE-2019-9674)<\/p>\n<p>It was discovered that Python incorrectly handled certain urls. A remote<br \/>attacker could possibly use this issue to perform CRLF injection attacks.<br \/>This issue only affected Ubuntu 14.04 LTS. (CVE-2019-9740, CVE-2019-9947)<\/p>\n<p>Sihoon Lee discovered that Python incorrectly handled the local_file:<br \/>scheme. A remote attacker could possibly use this issue to bypass blocklist<br \/>meschanisms. This issue only affected Ubuntu 14.04 LTS. (CVE-2019-9948)<\/p>\n<p>It was discovered that Python incorrectly handled certain IP values.<br \/>An attacker could possibly use this issue to cause a denial of service.<br \/>This issue only affected Ubuntu 14.04 LTS and Ubuntu 18.04 LTS.<br \/>(CVE-2020-14422)<\/p>\n<p>It was discovered that Python incorrectly handled certain character<br \/>sequences. A remote attacker could possibly use this issue to perform<br \/>CRLF injection. This issue only affected Ubuntu 14.04 LTS and Ubuntu<br \/>18.04 LTS. (CVE-2020-26116)<\/p>\n<p>It was discovered that Python incorrectly handled certain inputs.<br \/>An attacker could possibly use this issue to execute arbitrary code<br \/>or cause a denial of service. This issue only affected Ubuntu 14.04 LTS.<br \/>(CVE-2020-27619, CVE-2021-3177)<\/p>\n<p>It was discovered that Python incorrectly handled certain HTTP requests.<br \/>An attacker could possibly use this issue to cause a denial of service.<br \/>This issue only affected Ubuntu 14.04 LTS. (CVE-2020-8492)<\/p>\n<p>It was discovered that the Python stdlib ipaddress API incorrectly handled<br \/>octal strings. A remote attacker could possibly use this issue to perform a<br \/>wide variety of attacks, including bypassing certain access restrictions.<br \/>This issue only affected Ubuntu 18.04 LTS. (CVE-2021-29921)<\/p>\n<p>David Schw\u00f6rer discovered that Python incorrectly handled certain inputs.<br \/>An attacker could possibly use this issue to expose sensitive information.<br \/>This issue only affected Ubuntu 18.04 LTS. (CVE-2021-3426)<\/p>\n<p>It was discovered that Python incorrectly handled certain RFCs.<br \/>An attacker could possibly use this issue to cause a denial of service.<br \/>This issue only affected Ubuntu 14.04 LTS. (CVE-2021-3733)<\/p>\n<p>It was discovered that Python incorrectly handled certain server<br \/>responses. An attacker could possibly use this issue to cause a denial of<br \/>service. This issue only affected Ubuntu 14.04 LTS. (CVE-2021-3737)<\/p>\n<p>It was discovered that Python incorrectly handled certain FTP requests.<br \/>An attacker could possibly use this issue to expose sensitive information.<br \/>This issue only affected Ubuntu 14.04 LTS and Ubuntu 18.04 LTS.<br \/>(CVE-2021-4189)<\/p>\n<p>It was discovered that Python incorrectly handled certain inputs.<br \/>An attacker could possibly use this issue to execute arbitrary code.<br \/>This issue only affected Ubuntu 14.04 LTS and Ubuntu 18.04 LTS.<br \/>(CVE-2022-0391)<\/p>\n<p>Devin Jeanpierre discovered that Python incorrectly handled sockets when<br \/>the multiprocessing module was being used. A local attacker could possibly<br \/>use this issue to execute arbitrary code and escalate privileges.<br \/>This issue only affected Ubuntu 22.04 LTS. (CVE-2022-42919)<\/p>\n<p>It was discovered that Python incorrectly handled certain inputs. If a<br \/>user or an automated system were tricked into running a specially<br \/>crafted input, a remote attacker could possibly use this issue to cause a<br \/>denial of service. This issue only affected Ubuntu 14.04 LTS,<br \/>Ubuntu 18.04 LTS and Ubuntu 22.04 LTS. (CVE-2022-45061, CVE-2023-24329)<\/p>\n<p>It was discovered that Python incorrectly handled certain scripts.<br \/>An attacker could possibly use this issue to execute arbitrary code<br \/>or cause a crash. This issue only affected Ubuntu 14.04 LTS and<br \/>Ubuntu 18.04 LTS. (CVE-2022-48560)<\/p>\n<p>It was discovered that Python incorrectly handled certain plist files.<br \/>If a user or an automated system were tricked into processing a specially<br \/>crafted plist file, an attacker could possibly use this issue to consume<br \/>resources, resulting in a denial of service. This issue only affected<br \/>Ubuntu 14.04 LTS and Ubuntu 18.04 LTS. (CVE-2022-48564)<\/p>\n<p>It was discovered that Python did not properly handle XML entity<br \/>declarations in plist files. An attacker could possibly use this<br \/>vulnerability to perform an XML External Entity (XXE) injection,<br \/>resulting in a denial of service or information disclosure. This issue<br \/>only affected Ubuntu 14.04 LTS and Ubuntu 18.04 LTS. (CVE-2022-48565)<\/p>\n<p>It was discovered that Python did not properly provide constant-time<br \/>processing for a crypto operation. An attacker could possibly use this<br \/>issue to perform a timing attack and recover sensitive information. This<br \/>issue only affected Ubuntu 14.04 LTS and Ubuntu 18.04 LTS.<br \/>(CVE-2022-48566)<\/p>\n<p>It was discovered that Python instances of ssl.SSLSocket were vulnerable<br \/>to a bypass of the TLS handshake. An attacker could possibly use this<br \/>issue to cause applications to treat unauthenticated received data before<br \/>TLS handshake as authenticated data after TLS handshake. This issue only<br \/>affected Ubuntu 14.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS and Ubuntu<br \/>22.04 LTS. (CVE-2023-40217)<\/p>\n<p>It was discovered that Python incorrectly handled null bytes when<br \/>normalizing pathnames. An attacker could possibly use this issue to bypass<br \/>certain filename checks. This issue only affected Ubuntu 22.04 LTS.<br \/>(CVE-2023-41105)<\/p>\n<p>It was discovered that Python incorrectly handled privilege with certain<br \/>parameters. An attacker could possibly use this issue to maintain the<br \/>original processes&#8217; groups before starting the new process. This issue<br \/>only affected Ubuntu 23.10. (CVE-2023-6507)<\/p>\n<p>It was discovered that Python incorrectly handled symlinks in temp files.<br \/>An attacker could possibly use this issue to modify the permissions of<br \/>files. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS,<br \/>Ubuntu 22.04 LTS and Ubuntu 23.10. (CVE-2023-6597)<\/p>\n<p>It was discovered that Python incorrectly handled certain crafted zip<br \/>files. An attacker could possibly use this issue to crash the program,<br \/>resulting in a denial of service. (CVE-2024-0450)<\/p>\n<p>Update instructions:<\/p>\n<p>The problem can be corrected by updating your system to the following<br \/>package versions:<\/p>\n<p>Ubuntu 23.10<br \/>python3.11 3.11.6-3ubuntu0.1<br \/>python3.11-minimal 3.11.6-3ubuntu0.1<br \/>python3.12 3.12.0-1ubuntu0.1<br \/>python3.12-minimal 3.12.0-1ubuntu0.1<\/p>\n<p>Ubuntu 22.04 LTS<br \/>python3.10 3.10.12-1~22.04.4<br \/>python3.10-minimal 3.10.12-1~22.04.4<br \/>python3.11 3.11.0~rc1-1~22.04.1~esm1<br \/>Available with Ubuntu Pro<br \/>python3.11-minimal 3.11.0~rc1-1~22.04.1~esm1<br \/>Available with Ubuntu Pro<\/p>\n<p>Ubuntu 20.04 LTS<br \/>python3.8 3.8.10-0ubuntu1~20.04.10<br \/>python3.8-minimal 3.8.10-0ubuntu1~20.04.10<br \/>python3.9 3.9.5-3ubuntu0~20.04.1+esm2<br \/>Available with Ubuntu Pro<br \/>python3.9-minimal 3.9.5-3ubuntu0~20.04.1+esm2<br \/>Available with Ubuntu Pro<\/p>\n<p>Ubuntu 18.04 LTS<br \/>python3.6 3.6.9-1~18.04ubuntu1.13+esm2<br \/>Available with Ubuntu Pro<br \/>python3.6-minimal 3.6.9-1~18.04ubuntu1.13+esm2<br \/>Available with Ubuntu Pro<br \/>python3.7 3.7.5-2ubuntu1~18.04.2+esm3<br \/>Available with Ubuntu Pro<br \/>python3.7-minimal 3.7.5-2ubuntu1~18.04.2+esm3<br \/>Available with Ubuntu Pro<br \/>python3.8 3.8.0-3ubuntu1~18.04.2+esm2<br \/>Available with Ubuntu Pro<br \/>python3.8-minimal 3.8.0-3ubuntu1~18.04.2+esm2<br \/>Available with Ubuntu Pro<\/p>\n<p>Ubuntu 16.04 LTS<br \/>python3.5 3.5.2-2ubuntu0~16.04.13+esm13<br \/>Available with Ubuntu Pro<br \/>python3.5-minimal 3.5.2-2ubuntu0~16.04.13+esm13<br \/>Available with Ubuntu Pro<\/p>\n<p>Ubuntu 14.04 LTS<br \/>python3.5 3.5.2-2ubuntu0~16.04.4~14.04.1+esm1<br \/>Available with Ubuntu Pro<br \/>python3.5-minimal 3.5.2-2ubuntu0~16.04.4~14.04.1+esm1<br \/>Available with Ubuntu Pro<\/p>\n<p>In general, a standard system update will make all the necessary changes.<\/p>\n<p>References:<br \/>https:\/\/ubuntu.com\/security\/notices\/USN-6891-1<br \/>CVE-2015-20107, CVE-2018-1060, CVE-2018-1061, CVE-2018-14647,<br \/>CVE-2018-20406, CVE-2018-20852, CVE-2019-10160, CVE-2019-16056,<br \/>CVE-2019-16935, CVE-2019-17514, CVE-2019-18348, CVE-2019-20907,<br \/>CVE-2019-5010, CVE-2019-9636, CVE-2019-9674, CVE-2019-9740,<br \/>CVE-2019-9947, CVE-2019-9948, CVE-2020-14422, CVE-2020-26116,<br \/>CVE-2020-27619, CVE-2020-8492, CVE-2021-29921, CVE-2021-3177,<br \/>CVE-2021-3426, CVE-2021-3733, CVE-2021-3737, CVE-2021-4189,<br \/>CVE-2022-0391, CVE-2022-42919, CVE-2022-45061, CVE-2022-48560,<br \/>CVE-2022-48564, CVE-2022-48565, CVE-2022-48566, CVE-2023-24329,<br \/>CVE-2023-40217, CVE-2023-41105, CVE-2023-6507, CVE-2023-6597,<br \/>CVE-2024-0450<\/p>\n<p>Package Information:<br \/>https:\/\/launchpad.net\/ubuntu\/+source\/python3.11\/3.11.6-3ubuntu0.1<br \/>https:\/\/launchpad.net\/ubuntu\/+source\/python3.12\/3.12.0-1ubuntu0.1<\/p>\n","protected":false},"excerpt":{"rendered":"<p>==========================================================================Ubuntu Security Notice USN-6891-1July 11, 2024 python3.5, python3.6, python3.7, python3.8, python3.9, python3.10,python3.11, python3.12 vulnerabilities========================================================================== A security issue affects these releases of Ubuntu and its derivatives: &#8211; Ubuntu 23.10&#8211; Ubuntu 22.04 LTS&#8211; Ubuntu 20.04 LTS&#8211; Ubuntu 18.04 LTS&#8211; Ubuntu 16.04 LTS&#8211; Ubuntu 14.04 LTS Summary: Several security issues were fixed in Python. Software Description:&#8211; python3.11: An &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-58139","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/58139","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=58139"}],"version-history":[{"count":0,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/58139\/revisions"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=58139"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=58139"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=58139"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}