Advisories ยป MGASA-2021-0071

Updated python-py packages fix a security vulnerability

Publication date: 06 Feb 2021
Modification date: 06 Feb 2021
Type: security
Affected Mageia releases : 7
CVE: CVE-2020-29651

Description

A denial of service via regular expression in the py.path.svnwc component of
python-py through 1.9.0 could be used by attackers to cause a compute-time
denial of service attack by supplying malicious input to the blame
functionality (CVE-2020-29651).
                

References

SRPMS

7/core