Updated python-babel packages fix a security vulnerability
Publication date: 18 Jun 2021Modification date: 23 Jun 2021
Type: security
Affected Mageia releases : 7 , 8
CVE: CVE-2021-20095
Description
Relative Path Traversal in Babel 2.9.0 allows an attacker to load arbitrary locale files on disk and execute arbitrary code (CVE-2021-20095).
References
SRPMS
7/core
- python-babel-2.6.0-2.1.mga7
8/core
- python-babel-2.9.1-1.mga8