Ubuntu has issued an advisory on October 29: https://ubuntu.com/security/notices/USN-7084-1 Patch: https://launchpad.net/ubuntu/+source/python-urllib3/1.26.5-1~exp1ubuntu0.2
CVE: (none) => CVE-2024-37891Status comment: (none) => Patch available from UbuntuSource RPM: (none) => python-urllib3-1.26.18-4.mga9.src.rpm
Once more, thanks for the patch ref. I cannot always find them. Assigning to Python stack maintainers.
Assignee: bugsquad => python
Assigning to QA, Packages in 9/Core/Updates_testing: ====================== python3-urllib3+brotli-1.26.20-1.mga9.noarch.rpm python3-urllib3+socks-1.26.20-1.mga9.noarch.rpm python3-urllib3-1.26.20-1.mga9.noarch.rpm From SRPMS python-urllib3-1.26.20-1.mga9.src.rpm
CC: (none) => geiger.david68210Assignee: python => qa-bugs
Keywords: (none) => advisory
RH x86_64 LC_ALL=C urpmi --auto --auto-update medium "QA Testing (32-bit)" is up-to-date medium "QA Testing (64-bit)" is up-to-date medium "Core Release (distrib1)" is up-to-date medium "Core Updates (distrib3)" is up-to-date medium "Nonfree Release (distrib11)" is up-to-date medium "Nonfree Updates (distrib13)" is up-to-date medium "Tainted Release (distrib21)" is up-to-date medium "Tainted Updates (distrib23)" is up-to-date medium "Core 32bit Release (distrib31)" is up-to-date medium "Core 32bit Updates (distrib32)" is up-to-date medium "Nonfree 32bit Release (distrib36)" is up-to-date medium "Nonfree 32bit Updates (distrib37)" is up-to-date medium "Tainted 32bit Release (distrib41)" is up-to-date medium "Tainted 32bit Updates (distrib42)" is up-to-date medium "BDK-Free-x86_64" is up-to-date medium "BDK-Free-noarch" is up-to-date medium "BDK-NonFree-x86_64" is up-to-date installing python3-urllib3-1.26.20-1.mga9.noarch.rpm from //home/katnatek/qa-testing/x86_64 Preparing... ################################################################################################## 1/1: python3-urllib3 ################################################################################################## 1/1: removing python3-urllib3-1.26.18-4.mga9.noarch ################################################################################################## yt-dlp requires this Download video with yt-dlp, play the video OK Not founs POC
CC: (none) => andrewsfarmWhiteboard: (none) => MGA9-64-OK
Validating.
Keywords: (none) => validated_updateCC: (none) => sysadmin-bugs
An update for this issue has been pushed to the Mageia Updates repository. https://advisories.mageia.org/MGASA-2024-0347.html
Resolution: (none) => FIXEDStatus: NEW => RESOLVED