vulnerability

Oracle Linux: CVE-2023-41419: ELSA-2024-8834: python-gevent security update (IMPORTANT)

Severity
9
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:N)
Published
Aug 31, 2023
Added
Nov 11, 2024
Modified
Dec 3, 2025

Description

An issue in Gevent before version 23.9.0 allows a remote attacker to escalate privileges via a crafted script to the WSGIServer component.
A flaw was found in python-event, which could allow a remote attacker to gain elevated privileges on the system, caused by a flaw in the WSGIServer component. By using a specially crafted script, an attacker can gain elevated privileges.

Solution

oracle-linux-upgrade-python3-gevent
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.