Processing commands for [EMAIL PROTECTED]:
> tag 440097 - security
Bug#440097: CVE-2007-4559: directory traversal vulnerability in python tarfile
module
Tags were: upstream security
Tags removed: security
> severity 440097 important
Bug#440097: CVE-2007-4559: directory traversal vulnera
tag 440097 - security
severity 440097 important
tag 440099 - security
severity 440099 important
thanks
upstream doesn't see this as a security issue; I don't mind mentioning
the CVE for a fix, once a patch is available in the upstream
repositories.
Stefan Fritsch writes:
> Package: python2.4
> Ve
Package: python2.4
Version: 2.4.4-3
Severity: grave
Tags: security
Justification: user security hole
A vulnerability has been found in the python tarfile module.
>From CVE-2007-4559:
"Directory traversal vulnerability in the (1) extract and (2) extractall
functions in the tarfile module in Pyth
3 matches
Mail list logo