USN-7348-1 fixed vulnerabilities in Python. The update introduced a
regression. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
It was discovered that the Python ipaddress module contained incorrect
information about which IP address ranges were considered “private” or
“globally reachable”. This could possibly result in applications applying
incorrect security policies. This issue only affected Ubuntu 14.04 LTS
and Ubuntu 16.04 LTS. (CVE-2024-4032)
It was discovered that Python incorrectly handled quoting path names when
using the venv module. A local attacker able to control virtual
environments could possibly use this issue to execute arbitrary code when
the virtual environment is activated. (CVE-2024-9287)
It was discovered that Python incorrectly handled parsing bracketed hosts.
A remote attacker could possibly use this issue to perform a Server-Side
Request Forgery (SSRF) attack. This issue only affected Ubuntu 14.04 LTS
and Ubuntu 16.04 LTS. (CVE-2024-11168)
It was discovered that Python incorrectly handled parsing domain names that
included square brackets. A remote attacker could possibly use this issue
to perform a Server-Side Request Forgery (SSRF) attack. (CVE-2025-0938)
More Stories
perl-Data-Entropy-0.008-1.fc42
FEDORA-2025-76dbde76fe Packages in this update: perl-Data-Entropy-0.008-1.fc42 Update description: Prior to version 0.008, the Perl module Data::Entropy relied on Perl's builtin...
perl-Data-Entropy-0.008-1.fc40
FEDORA-2025-52d7857536 Packages in this update: perl-Data-Entropy-0.008-1.fc40 Update description: Prior to version 0.008, the Perl module Data::Entropy relied on Perl's builtin...
perl-Data-Entropy-0.008-1.el8
FEDORA-EPEL-2025-ed542e7452 Packages in this update: perl-Data-Entropy-0.008-1.el8 Update description: Prior to version 0.008, the Perl module Data::Entropy relied on Perl's builtin...
perl-Data-Entropy-0.008-1.el9
FEDORA-EPEL-2025-3ea9a27f9b Packages in this update: perl-Data-Entropy-0.008-1.el9 Update description: Prior to version 0.008, the Perl module Data::Entropy relied on Perl's builtin...
perl-Data-Entropy-0.008-1.fc41
FEDORA-2025-8a7bd987fe Packages in this update: perl-Data-Entropy-0.008-1.fc41 Update description: Prior to version 0.008, the Perl module Data::Entropy relied on Perl's builtin...
containernetworking-plugins-1.5.1-2.fc40
FEDORA-2025-f87fe38331 Packages in this update: containernetworking-plugins-1.5.1-2.fc40 Update description: Resolve FTBFS and rhbz#2351926 Read More