File _patchinfo of Package patchinfo.22273

<patchinfo incident="22273">
  <issue tracker="bnc" id="1192249">Installing python3.9 in SLE image pulls in Python3.6 packages [ref:_00D1igLOd._5001iltVIZ:ref]</issue>
  <issue tracker="bnc" id="1193179">Intalling python3.9 in SLE image pulls in Python3.6 packages</issue>
  <issue tracker="bnc" id="1190566">Python 3.6 does not include the compat fixes to work with OpenSSL 3.0.0</issue>
  <issue tracker="bnc" id="1186819">VUL-0: CVE-2021-3572: python27-pip,python-pip,python36-pip: pip incorrectly handled unicode separators in git references</issue>
  <issue tracker="bnc" id="1198511"/>
  <issue tracker="cve" id="2021-3572"/>
  <issue tracker="cve" id="2015-20107"/>
  <packager>mcepl</packager>
  <rating>important</rating>
  <category>security</category>
  <summary>Security update for python3</summary>
  <description>This update for python3 fixes the following issues:

Security issues fixed:

- CVE-2021-3572: Update bundled pip wheel to the latest SLE version (bsc#1186819)
- CVE-2015-20107: avoid command injection in the mailcap module (bsc#1198511).

Other bugs fixed:

- Remove shebangs from from python-base libraries in _libdir
  (bsc#1193179, bsc#1192249).

</description>
</patchinfo>
openSUSE Build Service is sponsored by