[Buildroot] [PATCH 3/3] package/python3: add upstream security fix for CVE-2019-10160
Peter Korsgaard
peter at korsgaard.com
Sun Jun 23 21:32:18 UTC 2019
>>>>> "Peter" == Peter Korsgaard <peter at korsgaard.com> writes:
> Fixes CVE-2019-10160: urlsplit does not handle NFKC normalization (2nd fix)
> While the fix for CVE-2019-9936 is included in 3.7.3, the followup
> regression fixes unfortunatly aren't.
> https://bugs.python.org/issue36742
> Signed-off-by: Peter Korsgaard <peter at korsgaard.com>
Committed to 2019.02.x and 2019.05.x, thanks.
--
Bye, Peter Korsgaard
More information about the buildroot
mailing list