Fedora 41: python-rpyc 2024-17a3b4d4c3 Security Advisory Updates
Summary
RPyC, or Remote Python Call, is a transparent and symmetrical python library
for remote procedure calls, clustering and distributed-computing.
RPyC makes use of object-proxies, a technique that employs python's dynamic
nature, to overcome the physical boundaries between processes and computers,
so that remote objects can be manipulated as if they were local.
Update Information:
Fix CVE-2024-27758
Change Log
* Thu Sep 26 2024 Fabian Affolter
References
[ 1 ] Bug #2269242 - CVE-2024-27758 python-rpyc: Remote attacker can craft a class, resulting in remote code execution
https://bugzilla.redhat.com/show_bug.cgi?id=2269242
Update Instructions
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-17a3b4d4c3' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label