[ubuntu/kinetic-updates] python3.10 3.10.7-1ubuntu0.4 (Accepted)

Ubuntu Archive Robot ubuntu-archive-robot at lists.canonical.com
Mon Jun 5 17:58:25 UTC 2023


python3.10 (3.10.7-1ubuntu0.4) kinetic-security; urgency=medium

  * SECURITY UPDATE: Possible Bypass Blocklisting
    - debian/patches/CVE-2023-24329-2.patch: adds a complementary patch/fix
      for CVE-2023-24329 that was partially fixed before. This patch starts
      stripping C0 control and space chars in 'urlsplit' in Lib/urllib/parse.py,
      Lib/test/test_urlparse.py.
    - CVE-2023-24329

Date: 2023-05-30 09:58:08.848232+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
Signed-By: Ubuntu Archive Robot <ubuntu-archive-robot at lists.canonical.com>
https://launchpad.net/ubuntu/+source/python3.10/3.10.7-1ubuntu0.4
-------------- next part --------------
Sorry, changesfile not available.


More information about the kinetic-changes mailing list