[Apollo] Advisories Statistics light light Login

RLSA-2024:8834

Security Mirrored from RHSA-2024:8834
Issued at: 2026-05-29
Updated at: 2026-05-30

Synopsis

Important: python-gevent security update



Description

gevent is a coroutine-based Python networking library that uses greenlet to provide a high-level synchronous API on top of libevent event loop. Features include: * convenient API around greenlets * familiar synchronization primitives (gevent.event, gevent.queue) * socket module that cooperates * WSGI server on top of libevent-http * DNS requests done through libevent-dns * monkey patching utility to get pure Python modules to cooperate

Security Fix(es):

* python-gevent: privilege escalation via a crafted script to the WSGIServer component (CVE-2023-41419)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 8 aarch64 Rocky Linux 8 x86_64

Fixes

2240651

CVEs

CVE-2023-41419

Affected packages

Rocky Linux 8 aarch64 - AppStream

python3-gevent-0:1.2.2-5.el8.aarch64.rpm python3-gevent-debuginfo-0:1.2.2-5.el8.aarch64.rpm python-gevent-0:1.2.2-5.el8.src.rpm python-gevent-debugsource-0:1.2.2-5.el8.aarch64.rpm

Rocky Linux 8 x86_64 - AppStream

python3-gevent-0:1.2.2-5.el8.x86_64.rpm python3-gevent-debuginfo-0:1.2.2-5.el8.x86_64.rpm python-gevent-0:1.2.2-5.el8.src.rpm python-gevent-debugsource-0:1.2.2-5.el8.x86_64.rpm