UbuntuUpdates.org

Package "python3.4"

Name: python3.4

Description:

Interactive high-level object-oriented language (version 3.4)

Latest version: 3.4.3-1ubuntu1~14.04.7
Release: trusty (14.04)
Level: updates
Repository: main

Links


Download "python3.4"


Other versions of "python3.4" in Trusty

Repository Area Version
base main 3.4.0-2ubuntu1
security main 3.4.3-1ubuntu1~14.04.7

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 3.4.3-1ubuntu1~14.04.1 2015-09-23 16:06:31 UTC

  python3.4 (3.4.3-1ubuntu1~14.04.1) trusty-proposed; urgency=medium

  * Backport issue #23844 from the 3.4 branch, replacing the 512 bit dh key
    with a 2014 bit one. Triggered by OpenSSL security update in
    trusty-security. LP: #1264554.
  * Fix expansion of makefile macros for _sysconfigdata. Issue #24705.

Source diff to previous version
1264554 python3.4 autopkg test failures

Version: 3.4.0-2ubuntu1.1 2015-06-25 14:06:19 UTC

  python3.4 (3.4.0-2ubuntu1.1) trusty-security; urgency=medium

  * SECURITY UPDATE: denial of service via xmlrpc gzip-compressed
    HTTP bodies
    - debian/patches/CVE-2013-1753.patch: add default limit in
      Lib/xmlrpc/client.py, added test to Lib/test/test_xmlrpc.py.
    - CVE-2013-1753
  * SECURITY UPDATE: arbitrary memory read via idx argument
    - debian/patches/CVE-2014-4616.patch: reject negative idx values in
      Modules/_json.c, added test to Lib/test/test_json/test_decode.py.
    - CVE-2014-4616
  * SECURITY UPDATE: code execution or file disclosure via CGIHTTPServer
    - debian/patches/CVE-2014-4650.patch: url unquote path in
      Lib/http/server.py, added test to Lib/test/test_httpservers.py.
    - CVE-2014-4650
  * debian/patches/fix_ssl_test_dh.patch: replace 512 bit dh key with a
    2014 bit one to fix test failure with OpenSSL security update.

 -- Marc Deslauriers <email address hidden> Fri, 19 Jun 2015 07:11:22 -0400

CVE-2014-4616 arbitrary process memory read



About   -   Send Feedback to @ubuntu_updates