QID 159194

Date Published: 2021-06-03

QID 159194: Oracle Enterprise Linux Security Update for python-cryptography (ELSA-2021-1608)

Oracle Enterprise Linux has released a security update for python-cryptography to fix the vulnerabilities.

Affected Product:
Oracle Linux 8

This vulnerability could be exploited to gain partial access to sensitive information. Additionally this vulnerability can also be used to cause a limited denial of service in the form of interruptions in resource availability.

  • CVSS V3 rated as Critical - 9.1 severity.
  • CVSS V2 rated as High - 6.4 severity.
  • Solution
    To resolve this issue, upgrade to the latest packages which contain a patch. Refer to Oracle Enterprise Linux advisory below for updates and patch information:

    ELSA-2021-1608.
    Vendor References

    CVEs related to QID 159194

    Software Advisories
    Advisory ID Software Component Link
    ELSA-2021-1608 Oracle Linux URL Logo linux.oracle.com/errata/ELSA-2021-1608.html