Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.bugs.dist > #1019272 > unrolled thread

Bug#966272: buster-pu: package python3.7/3.7.3-2+deb10u2

Started byMoritz Muehlenhoff <jmm@debian.org>
First post2020-07-25 20:30 +0200
Last post2020-07-26 13:40 +0200
Articles 2 — 2 participants

Back to article view | Back to linux.debian.bugs.dist


Contents

  Bug#966272: buster-pu: package python3.7/3.7.3-2+deb10u2 Moritz Muehlenhoff <jmm@debian.org> - 2020-07-25 20:30 +0200
    Bug#966272: python3.7 3.7.3-2+deb10u2 flagged for acceptance Adam D Barratt <adam@adam-barratt.org.uk> - 2020-07-26 13:40 +0200

#1019272 — Bug#966272: buster-pu: package python3.7/3.7.3-2+deb10u2

FromMoritz Muehlenhoff <jmm@debian.org>
Date2020-07-25 20:30 +0200
SubjectBug#966272: buster-pu: package python3.7/3.7.3-2+deb10u2
Message-ID<Awx5L-7nC-1@gated-at.bofh.it>

[Multipart message — attachments visible in raw view] — view raw

Package: release.debian.org
Severity: normal
Tags: buster
User: release.debian.org@packages.debian.org
Usertags: pu

Fixes three minor security issues, debdiff attached.

Cheers,
        Moritz

[toc] | [next] | [standalone]


#1019343 — Bug#966272: python3.7 3.7.3-2+deb10u2 flagged for acceptance

FromAdam D Barratt <adam@adam-barratt.org.uk>
Date2020-07-26 13:40 +0200
SubjectBug#966272: python3.7 3.7.3-2+deb10u2 flagged for acceptance
Message-ID<AwNax-dN-7@gated-at.bofh.it>
In reply to#1019272
package release.debian.org
tags 966272 = buster pending
thanks

Hi,

The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster.

Thanks for your contribution!

Upload details
==============

Package: python3.7
Version: 3.7.3-2+deb10u2

Explanation: avoid infinite loop when reading specially crafted TAR files using the tarfile module [CVE-2019-20907]; resolve hash collisions for IPv4Interface and IPv6Interface [CVE-2020-14422]; fix denial of service issue in urllib.request.AbstractBasicAuthHandler [CVE-2020-8492]

[toc] | [prev] | [standalone]


Back to top | Article view | linux.debian.bugs.dist


csiph-web