Ubuntu Security Notice 3496-2 - USN-3496-1 fixed a vulnerability in Python. This update provides the corresponding update for Ubuntu 12.04 ESM. It was discovered that Python incorrectly handled decoding certain strings. An attacker could possibly use this issue to execute arbitrary code. Various other issues were also addressed.
4a22f21aff027378e07779d79dadfe00a297d9391643a87ff58a459c0677471e
===========================================================================
Ubuntu Security Notice USN-3496-2
November 28, 2017
python2.7 vulnerability
===========================================================================
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 12.04 ESM
Summary:
Python could be made to run arbitrary code.
Software Description:
- python2.7: An interactive high-level object-oriented language
Details:
USN-3496-1 fixed a vulnerability in Python. This update provides
the corresponding update for Ubuntu 12.04 ESM.
Original advisory details:
It was discovered that Python incorrectly handled decoding certain
strings. An attacker could possibly use this issue to execute
arbitrary code.
Update instructions:
The problem can be corrected by updating your system to the following
package versions:
Ubuntu 12.04 ESM:
python2.7=C2=A02.7.3-0ubuntu3.10
python2.7-minimal=C2=A02.7.3-0ubuntu3.10
In general, a standard system update will make all the necessary
changes.
References:
https://www.ubuntu.com/usn/usn-3496-2
https://www.ubuntu.com/usn/usn-3496-1
CVE-2017-1000158
--=-d31e9RDY9hgr+zcTHDO2
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2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=oXxs
-----END PGP SIGNATURE-----
--=-d31e9RDY9hgr+zcTHDO2--