[Buildroot] [PATCH 3/3] package/python3: add upstream security fix for CVE-2019-10160

Peter Korsgaard peter at korsgaard.com
Sun Jun 23 21:32:18 UTC 2019


>>>>> "Peter" == Peter Korsgaard <peter at korsgaard.com> writes:

 > Fixes CVE-2019-10160: urlsplit does not handle NFKC normalization (2nd fix)
 > While the fix for CVE-2019-9936 is included in 3.7.3, the followup
 > regression fixes unfortunatly aren't.

 > https://bugs.python.org/issue36742

 > Signed-off-by: Peter Korsgaard <peter at korsgaard.com>

Committed to 2019.02.x and 2019.05.x, thanks.

-- 
Bye, Peter Korsgaard



More information about the buildroot mailing list