Bug#780506: requests: CVE-2015-2296: session fixation and cookie stealing issue

2015-03-15 Thread Daniele Tricoli
Hello Salvatore, Salvatore Bonaccorso wrote: > Hi, > > the following vulnerability was published for requests. > > CVE-2015-2296[0]: > session fixation and cookie stealing Thanks for notifing, I was alredy update by upstream. I'im going to work on this today. Kind regards, -- Daniele Trico

Bug#780506: requests: CVE-2015-2296: session fixation and cookie stealing issue

2015-03-14 Thread Salvatore Bonaccorso
Source: requests Version: 2.4.3-4 Severity: grave Tags: security upstream patch fixed-upstream Hi, the following vulnerability was published for requests. CVE-2015-2296[0]: session fixation and cookie stealing If you fix the vulnerability please also make sure to include the CVE (Common Vulnera