]> code.ossystems Code Review - openembedded-core.git/commit
python3: add CVE-2007-4559 to whitelist
authorRoss Burton <ross@burtonini.com>
Thu, 19 Nov 2020 10:38:10 +0000 (10:38 +0000)
committerSteve Sakoman <steve@sakoman.com>
Mon, 30 Nov 2020 22:05:57 +0000 (12:05 -1000)
commit267130c66dde462a0a1043ab5dffdb86781389a0
treebc4388665219745c78bc0a758bcc751c3e024200
parent2618eedbafc408c41479e63dac88a9b5bab461fc
python3: add CVE-2007-4559 to whitelist

This issue describes expected behaviour, do not use tarfile with
untrusted data.

Signed-off-by: Ross Burton <ross.burton@arm.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
(cherry picked from commit f4c22e83f2e68ff157da5ea1303acc2931d63f5f)
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-devtools/python/python3_3.8.2.bb