Synopsis
Moderate: python-mako security update
Type/Severity
Security Advisory: Moderate
Red Hat Lightspeed patch analysis
Identify and remediate systems affected by this advisory.
View affected systems
Topic
An update for python-mako is now available for Red Hat Enterprise Linux 8.
Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Description
Mako is a template library written in Python. It provides a familiar, non-XML syntax which compiles into Python modules for maximum performance.
Security Fix(es):
- mako: REDoS in Lexer class (CVE-2022-40023)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.8 Release Notes linked from the References section.
Affected Products
-
Red Hat Enterprise Linux for x86_64 8 x86_64
-
Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.8 x86_64
-
Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 x86_64
-
Red Hat Enterprise Linux for IBM z Systems 8 s390x
-
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 8.8 s390x
-
Red Hat Enterprise Linux for Power, little endian 8 ppc64le
-
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.8 ppc64le
-
Red Hat Enterprise Linux Server - TUS 8.8 x86_64
-
Red Hat Enterprise Linux for ARM 64 8 aarch64
-
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 8.8 aarch64
-
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le
-
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64
-
Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 8.10 x86_64
-
Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 8.10 aarch64
-
Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 8.10 ppc64le
-
Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 8.10 s390x
Fixes
-
BZ - 2128977
- CVE-2022-40023 python-mako: REDoS in Lexer class
Note:
More recent versions of these packages may be available.
Click a package name for more details.
Red Hat Enterprise Linux for x86_64 8
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| x86_64 |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.8
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| x86_64 |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| x86_64 |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux for IBM z Systems 8
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| s390x |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 8.8
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| s390x |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux for Power, little endian 8
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| ppc64le |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.8
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| ppc64le |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux Server - TUS 8.8
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| x86_64 |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux for ARM 64 8
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| aarch64 |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 8.8
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| aarch64 |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| ppc64le |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| x86_64 |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 8.10
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| x86_64 |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 8.10
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| aarch64 |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 8.10
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| ppc64le |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |
Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 8.10
| SRPM |
|
python-mako-1.0.6-14.el8.src.rpm
|
SHA-256: d2211f7854dc876debf22335eb9b63ea810e51df5fbe9f592f855df53bebfad3 |
| s390x |
|
python3-mako-1.0.6-14.el8.noarch.rpm
|
SHA-256: 1b49c4d2ace5f5b2e56075c4c7411258466db59a73de5b24e61f58891d006b71 |