Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:4243 - Security Advisory
Issued:
2024-07-02
Updated:
2024-07-02

RHSA-2024:4243 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: python3 security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for python3 is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.

Security Fix(es):

  • python: The zipfile module is vulnerable to zip-bombs leading to denial of service (CVE-2024-0450)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 8 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 8 s390x
  • Red Hat Enterprise Linux for Power, little endian 8 ppc64le
  • Red Hat Enterprise Linux for ARM 64 8 aarch64
  • Red Hat CodeReady Linux Builder for x86_64 8 x86_64
  • Red Hat CodeReady Linux Builder for Power, little endian 8 ppc64le
  • Red Hat CodeReady Linux Builder for ARM 64 8 aarch64
  • Red Hat CodeReady Linux Builder for IBM z Systems 8 s390x

Fixes

  • BZ - 2276525 - CVE-2024-0450 python: The zipfile module is vulnerable to zip-bombs leading to denial of service

CVEs

  • CVE-2024-0450

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 8

SRPM
python3.12-3.12.3-2.el8_10.src.rpm SHA-256: 24f7f41f0a7dd3fab29fb7631a49aa3de3ed6d461b6d9a61e580e0b55633d3c4
x86_64
python3.12-3.12.3-2.el8_10.x86_64.rpm SHA-256: 6f46248fe82fccd715d2d9834964a3df9b94262e04489c74877ff91234c444a9
python3.12-debuginfo-3.12.3-2.el8_10.i686.rpm SHA-256: adca3f0efbc7f46cf65d86e34c2885741a2747f23fd3b948759123c8a6e899f9
python3.12-debuginfo-3.12.3-2.el8_10.x86_64.rpm SHA-256: d8ea6dbdf0701d97a4d1faf0dd2cd3c8ef7d6bd28f3d1b89f4fee9adf8db2043
python3.12-debugsource-3.12.3-2.el8_10.i686.rpm SHA-256: 4c356eceb0843588f9e01adb233d35f4e027018406824b13a4e37126dd8d1a3f
python3.12-debugsource-3.12.3-2.el8_10.x86_64.rpm SHA-256: 82f915705c22c547f59835ff1ed4432f987ed6ad465814bf38b41d5cf1b600a3
python3.12-devel-3.12.3-2.el8_10.i686.rpm SHA-256: 0dd4a3917b9072b5d07e4441bf7527cc2938cdf1b0955f3140ee41f104918af3
python3.12-devel-3.12.3-2.el8_10.x86_64.rpm SHA-256: fafeb6a2f7ad03211bd4b4119c5aa09631729c0621f2fda0ee1b6e6a68b7a6bc
python3.12-libs-3.12.3-2.el8_10.i686.rpm SHA-256: a15714826502e058d3b0e3b93443ac5fe022a010572877aaf2059349ad6c508a
python3.12-libs-3.12.3-2.el8_10.x86_64.rpm SHA-256: 05538c84a3d56692e25ef79631e4aaf827f064f78896fe01790120308944a2e7
python3.12-rpm-macros-3.12.3-2.el8_10.noarch.rpm SHA-256: 25cbb7fafc075f73d1c0630ec1c2cbaf42def9e32d791c8b4e3005c7355c0125
python3.12-tkinter-3.12.3-2.el8_10.x86_64.rpm SHA-256: 24d7d3885b63963a440d4d68a44dba6b16dc44806d563ad48997d58140038919

Red Hat Enterprise Linux for IBM z Systems 8

SRPM
python3.12-3.12.3-2.el8_10.src.rpm SHA-256: 24f7f41f0a7dd3fab29fb7631a49aa3de3ed6d461b6d9a61e580e0b55633d3c4
s390x
python3.12-3.12.3-2.el8_10.s390x.rpm SHA-256: 2ba2fea56e92fc01c57e492103f1b480feffc85e3749a678cb5919931b00e89d
python3.12-debuginfo-3.12.3-2.el8_10.s390x.rpm SHA-256: 1942ce000362048c282cbc2ae8555bcd159ba55b33ec6400f364baa588585004
python3.12-debugsource-3.12.3-2.el8_10.s390x.rpm SHA-256: d15a29e2ef4c0ffc34f83ee06cd21a6e66f8bc0550835dfd9f59c13e55802cbb
python3.12-devel-3.12.3-2.el8_10.s390x.rpm SHA-256: 9c036b0b356674feb6c86376386538b50d98defbef3a4e976798e88502585054
python3.12-libs-3.12.3-2.el8_10.s390x.rpm SHA-256: 5ed236c6b94ceaf3554049c21f90e844314707e23fc4a9a6ac222d6437e2632d
python3.12-rpm-macros-3.12.3-2.el8_10.noarch.rpm SHA-256: 25cbb7fafc075f73d1c0630ec1c2cbaf42def9e32d791c8b4e3005c7355c0125
python3.12-tkinter-3.12.3-2.el8_10.s390x.rpm SHA-256: 8bf90aa8a16ccdde81ab69775ad89548143259e7ce3f0821806fbbb38f4df300

Red Hat Enterprise Linux for Power, little endian 8

SRPM
python3.12-3.12.3-2.el8_10.src.rpm SHA-256: 24f7f41f0a7dd3fab29fb7631a49aa3de3ed6d461b6d9a61e580e0b55633d3c4
ppc64le
python3.12-3.12.3-2.el8_10.ppc64le.rpm SHA-256: 0cc09d2b7764480751314d59fd305f1ca54fbefc8dc7a611218c3158a95f7c56
python3.12-debuginfo-3.12.3-2.el8_10.ppc64le.rpm SHA-256: 18749027efc969da2ef000a756b2874655ab63f44ccf8420aa19f891fe27a12d
python3.12-debugsource-3.12.3-2.el8_10.ppc64le.rpm SHA-256: 1374324bd60c80cb96c9b03aabc13da240a0fbf2fef1d9208055c068e9edbd82
python3.12-devel-3.12.3-2.el8_10.ppc64le.rpm SHA-256: 74b897848ba1b22e8f98e80f98b1c5a96983262a734d4c772a6edb485487c76d
python3.12-libs-3.12.3-2.el8_10.ppc64le.rpm SHA-256: 41ee908e8f21a39c37af9dcf0d40d850e657d169449e251ed5146c3cab2abc86
python3.12-rpm-macros-3.12.3-2.el8_10.noarch.rpm SHA-256: 25cbb7fafc075f73d1c0630ec1c2cbaf42def9e32d791c8b4e3005c7355c0125
python3.12-tkinter-3.12.3-2.el8_10.ppc64le.rpm SHA-256: 6bcf74c81eed66415f6e1a287c4691a3254510dd9ab686aaa6f445175bd159d6

Red Hat Enterprise Linux for ARM 64 8

SRPM
python3.12-3.12.3-2.el8_10.src.rpm SHA-256: 24f7f41f0a7dd3fab29fb7631a49aa3de3ed6d461b6d9a61e580e0b55633d3c4
aarch64
python3.12-3.12.3-2.el8_10.aarch64.rpm SHA-256: 1ff07ed0066a8cd95dbc58c044e3466e74c9077766c37c4f8def6860deb718b0
python3.12-debuginfo-3.12.3-2.el8_10.aarch64.rpm SHA-256: a2d10dcf6e976dcf9c6b0afa41cc23fb44ed2e37045e29103a254cebc30db774
python3.12-debugsource-3.12.3-2.el8_10.aarch64.rpm SHA-256: 2677c27b163df3cbe5203bf5ad20f85e77fd485ba085eb31b8f30220dad2700b
python3.12-devel-3.12.3-2.el8_10.aarch64.rpm SHA-256: 2c9f77b40456cd48f407f650fb9b63f25ca25687c7326e0354626d29bfb791a6
python3.12-libs-3.12.3-2.el8_10.aarch64.rpm SHA-256: c5543eeb23f6a7b2ff1d609f0c3793acb36a1a3a30a641fc86c975af3378f2d0
python3.12-rpm-macros-3.12.3-2.el8_10.noarch.rpm SHA-256: 25cbb7fafc075f73d1c0630ec1c2cbaf42def9e32d791c8b4e3005c7355c0125
python3.12-tkinter-3.12.3-2.el8_10.aarch64.rpm SHA-256: 7bc5ee5e7cd0d8d02942ac2771f1608a7fe2e8e6efd758d331b3c95228a77ccc

Red Hat CodeReady Linux Builder for x86_64 8

SRPM
x86_64
python3.12-3.12.3-2.el8_10.i686.rpm SHA-256: 1b74d6e023e7db8df5df6af0ccf9ab54df3dfdf9db0d137b3e85574bc3c05b01
python3.12-debug-3.12.3-2.el8_10.i686.rpm SHA-256: 780b1e3c8f06ad9e958c882f18cf933114c5cc42970d724ad40702164789500d
python3.12-debug-3.12.3-2.el8_10.x86_64.rpm SHA-256: b5f584a2d69f0246246c064a4a1cefe702d7321581c875348d1d36c226e3df32
python3.12-debuginfo-3.12.3-2.el8_10.i686.rpm SHA-256: adca3f0efbc7f46cf65d86e34c2885741a2747f23fd3b948759123c8a6e899f9
python3.12-debuginfo-3.12.3-2.el8_10.x86_64.rpm SHA-256: d8ea6dbdf0701d97a4d1faf0dd2cd3c8ef7d6bd28f3d1b89f4fee9adf8db2043
python3.12-debugsource-3.12.3-2.el8_10.i686.rpm SHA-256: 4c356eceb0843588f9e01adb233d35f4e027018406824b13a4e37126dd8d1a3f
python3.12-debugsource-3.12.3-2.el8_10.x86_64.rpm SHA-256: 82f915705c22c547f59835ff1ed4432f987ed6ad465814bf38b41d5cf1b600a3
python3.12-idle-3.12.3-2.el8_10.i686.rpm SHA-256: 59899838e902d2d2900dd0ec3ccf03f8656e6a451395dc0e4fa1022959652aba
python3.12-idle-3.12.3-2.el8_10.x86_64.rpm SHA-256: 9c2bc9844fcd126d8f285e576785473b8871bc5e3b5d37e1485a52e9e8979306
python3.12-test-3.12.3-2.el8_10.i686.rpm SHA-256: aa85e4a90b02cb578b9fe4f50ea434076a03fa0e86999cd09ad94e7ed8278128
python3.12-test-3.12.3-2.el8_10.x86_64.rpm SHA-256: cf8bb2b4c58ec31ea1fd01a5d8340b5a99ed51cb37b98c38f35a98e6e5437e77
python3.12-tkinter-3.12.3-2.el8_10.i686.rpm SHA-256: 514687ddd86479a8f933548273e8e9fff17878c5dc84e0dc6238863677f7a0cc

Red Hat CodeReady Linux Builder for Power, little endian 8

SRPM
ppc64le
python3.12-debug-3.12.3-2.el8_10.ppc64le.rpm SHA-256: cdad6d3024e2a78abf4909f1d75742ebbe162bfa41a182f2c07bfa3dc0d0bd29
python3.12-debuginfo-3.12.3-2.el8_10.ppc64le.rpm SHA-256: 18749027efc969da2ef000a756b2874655ab63f44ccf8420aa19f891fe27a12d
python3.12-debugsource-3.12.3-2.el8_10.ppc64le.rpm SHA-256: 1374324bd60c80cb96c9b03aabc13da240a0fbf2fef1d9208055c068e9edbd82
python3.12-idle-3.12.3-2.el8_10.ppc64le.rpm SHA-256: a267fa758b49f195bd9592058e2dbe061340bcf9b2e4b49d5a33c867f42eb594
python3.12-test-3.12.3-2.el8_10.ppc64le.rpm SHA-256: a39ba2475a0d8cde572d728706bd09e2050ec1947c4d2909eb25a24368df96e4

Red Hat CodeReady Linux Builder for ARM 64 8

SRPM
aarch64
python3.12-debug-3.12.3-2.el8_10.aarch64.rpm SHA-256: d7be39dde65970f7205703b063615d4b785b32c9cd3cfb97d8af703123b8fb12
python3.12-debuginfo-3.12.3-2.el8_10.aarch64.rpm SHA-256: a2d10dcf6e976dcf9c6b0afa41cc23fb44ed2e37045e29103a254cebc30db774
python3.12-debugsource-3.12.3-2.el8_10.aarch64.rpm SHA-256: 2677c27b163df3cbe5203bf5ad20f85e77fd485ba085eb31b8f30220dad2700b
python3.12-idle-3.12.3-2.el8_10.aarch64.rpm SHA-256: 9a147202c5d13782d8013237312f77c15ed5944867a0ba521a79b97206b851f6
python3.12-test-3.12.3-2.el8_10.aarch64.rpm SHA-256: d30dcfd8e9b8ced124d6bd8fee79e2049c6692a2cec4c5c1db563a43d5ec2f94

Red Hat CodeReady Linux Builder for IBM z Systems 8

SRPM
s390x
python3.12-debug-3.12.3-2.el8_10.s390x.rpm SHA-256: ccbc48559ace0669893129746fbc54b134c6e7ead83ca07903c5131ed76b8c73
python3.12-debuginfo-3.12.3-2.el8_10.s390x.rpm SHA-256: 1942ce000362048c282cbc2ae8555bcd159ba55b33ec6400f364baa588585004
python3.12-debugsource-3.12.3-2.el8_10.s390x.rpm SHA-256: d15a29e2ef4c0ffc34f83ee06cd21a6e66f8bc0550835dfd9f59c13e55802cbb
python3.12-idle-3.12.3-2.el8_10.s390x.rpm SHA-256: 233090717d195e5fc5557d29b1bdd566a65e9fc9eb8699745aff2ed672b9cd65
python3.12-test-3.12.3-2.el8_10.s390x.rpm SHA-256: 848fa873d5481135a74aed69299496e9448586fb49f0f45b8bd2af925e1408f9

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility