]> code.ossystems Code Review - openembedded-core.git/commit
python3: add CVE-2007-4559 to whitelist
authorRoss Burton <ross@burtonini.com>
Thu, 19 Nov 2020 10:38:10 +0000 (10:38 +0000)
committerAnuj Mittal <anuj.mittal@intel.com>
Wed, 25 Nov 2020 15:02:35 +0000 (23:02 +0800)
commit391ed53928db0df325798a0bce18ec6947e09ddd
treed48af548de569d51df003dc7f149f5304b157552
parent62e07072bbeeebfead34bbdb04e75cff1c4ef1e1
python3: add CVE-2007-4559 to whitelist

This issue describes expected behaviour, do not use tarfile with
untrusted data.

Signed-off-by: Ross Burton <ross.burton@arm.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
(cherry picked from commit f4c22e83f2e68ff157da5ea1303acc2931d63f5f)
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
meta/recipes-devtools/python/python3_3.8.5.bb