← Search the atlas
SUSE-SU-2023:0868-1
Not scored
Security update for python3
This update for python3 fixes the following issues:
- CVE-2023-24329: Fixed a blocklist bypass via the urllib.parse component when supplying a URL that starts with blank characters (bsc#1208471).
The following non-security bug was fixed:
- Eliminate unnecessary and dangerous calls to PyThread_exit_thread() (bsc#1203355).
Exploit probability
Not scored
Published
March 22, 2023
Required by
Not available
Last source change
February 4, 2026
02 / AFFECTED SOFTWARE
Affected packages
SUSE:Enterprise Storage 7.1
python3
SUSE:Enterprise Storage 7.1
python3-core
SUSE:Linux Enterprise High Performance Computing 15 SP3-ESPOS
python3
SUSE:Linux Enterprise High Performance Computing 15 SP3-ESPOS
python3-core
SUSE:Linux Enterprise High Performance Computing 15 SP3-LTSS
python3
SUSE:Linux Enterprise High Performance Computing 15 SP3-LTSS
python3-core
SUSE:Linux Enterprise Micro 5.2
python3
SUSE:Linux Enterprise Micro 5.2
python3-core
SUSE:Linux Enterprise Micro 5.3
python3
SUSE:Linux Enterprise Micro 5.3
python3-core
SUSE:Linux Enterprise Module for Basesystem 15 SP4
python3
SUSE:Linux Enterprise Module for Basesystem 15 SP4
python3-core
SUSE:Linux Enterprise Module for Development Tools 15 SP4
python3-core
SUSE:Linux Enterprise Real Time 15 SP3
python3
SUSE:Linux Enterprise Real Time 15 SP3
python3-core
SUSE:Linux Enterprise Server 15 SP3-LTSS
python3
SUSE:Linux Enterprise Server 15 SP3-LTSS
python3-core
SUSE:Linux Enterprise Server for SAP Applications 15 SP3
python3
SUSE:Linux Enterprise Server for SAP Applications 15 SP3
python3-core
SUSE:Manager Proxy 4.2
python3
SUSE:Manager Proxy 4.2
python3-core
SUSE:Manager Server 4.2
python3
SUSE:Manager Server 4.2
python3-core
openSUSE:Leap 15.4
python3
openSUSE:Leap 15.4
python3-core
openSUSE:Leap 15.4
python3-documentation
openSUSE:Leap Micro 5.3
python3
openSUSE:Leap Micro 5.3
python3-core
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
SUSE-SU-2023:0868-1
This update for python3 fixes the following issues:
- CVE-2023-24329: Fixed a blocklist bypass via the urllib.parse component when supplying a URL that starts with blank characters (bsc#1208471).
The following non-security bug was fixed:
- Eliminate unnecessary and dangerous calls to PyThread_exit_thread() (bsc#1203355).
View original source ↗
05 / REFERENCES
Further evidence