File _patchinfo of Package patchinfo.36159
<patchinfo incident="36159">
<issue tracker="cve" id="2024-9287"/>
<issue tracker="bnc" id="1232241">VUL-0: CVE-2024-9287: python,python3,python310,python311,python312,python36,python39: A vulnerability has been found in the CPython `venv` module and CLI where path names provided when creating a virtual environment were not quoted properly, allowing ...</issue>
<issue tracker="bnc" id="1230906">python312: has some mtime based .pyc files</issue>
<packager>mcepl</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for python3</summary>
<description>This update for python3 fixes the following issues:
Security fixes:
- CVE-2024-9287: properly quote path names provided when creating a virtual environment (bsc#1232241)
Other fixes:
- Drop .pyc files from docdir for reproducible builds (bsc#1230906)
</description>
</patchinfo>