- Issued:
- 2024-06-03
- Updated:
- 2024-06-03
RHSA-2024:3552 - Security Advisory
Synopsis
Moderate: python-idna security and bug fix update
Type/Severity
Security Advisory: Moderate
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
Topic
An update for python-idna is now available for Red Hat Enterprise Linux 8.6.
Red Hat Product Security has rated this update as having a security impact of
Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE
link(s) in the References section.
Description
Security Fix(es):
- python-idna: potential DoS via resource consumption via specially crafted
inputs to idna.encode() (CVE-2024-3651)
Solution
Before applying this update, make sure all previously released errata
relevant to your system have been applied.
For details on how to apply this update, refer to:
Affected Products
- Red Hat Enterprise Linux Server - AUS 8.6 x86_64
- Red Hat Enterprise Linux Server - TUS 8.6 x86_64
- Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.6 ppc64le
- Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.6 x86_64
Fixes
- BZ - 2274779 - CVE-2024-3651 python-idna: potential DoS via resource consumption via specially crafted inputs to idna.encode()
CVEs
Red Hat Enterprise Linux Server - AUS 8.6
SRPM | |
---|---|
python-idna-2.5-5.el8_6.1.src.rpm | SHA-256: 278756348d95b0744ba93a6c84753802a7ced84730f81ffccfaac86c0d8784f3 |
x86_64 | |
python3-idna-2.5-5.el8_6.1.noarch.rpm | SHA-256: 5628a284f145358d8dc51ffba15c51af894d1b0a18bd2fff768c7abd3ce3889a |
Red Hat Enterprise Linux Server - TUS 8.6
SRPM | |
---|---|
python-idna-2.5-5.el8_6.1.src.rpm | SHA-256: 278756348d95b0744ba93a6c84753802a7ced84730f81ffccfaac86c0d8784f3 |
x86_64 | |
python3-idna-2.5-5.el8_6.1.noarch.rpm | SHA-256: 5628a284f145358d8dc51ffba15c51af894d1b0a18bd2fff768c7abd3ce3889a |
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.6
SRPM | |
---|---|
python-idna-2.5-5.el8_6.1.src.rpm | SHA-256: 278756348d95b0744ba93a6c84753802a7ced84730f81ffccfaac86c0d8784f3 |
ppc64le | |
python3-idna-2.5-5.el8_6.1.noarch.rpm | SHA-256: 5628a284f145358d8dc51ffba15c51af894d1b0a18bd2fff768c7abd3ce3889a |
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.6
SRPM | |
---|---|
python-idna-2.5-5.el8_6.1.src.rpm | SHA-256: 278756348d95b0744ba93a6c84753802a7ced84730f81ffccfaac86c0d8784f3 |
x86_64 | |
python3-idna-2.5-5.el8_6.1.noarch.rpm | SHA-256: 5628a284f145358d8dc51ffba15c51af894d1b0a18bd2fff768c7abd3ce3889a |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.