summary |
shortlog | log |
commit |
commitdiff |
tree
first ⋅ prev ⋅ next
JinWang An [Tue, 28 Mar 2023 08:07:59 +0000 (17:07 +0900)]
[CVE-2021-3733] Fix ReDoS in request
Change-Id: I9d4f7bf7e4ce08fe9f8165fcd16b9e17d1de193a
Signed-off-by: JinWang An <jinwang.an@samsung.com>
Senthil Kumaran [Mon, 15 Feb 2021 19:16:43 +0000 (11:16 -0800)]
[CVE-2021-23336] only use '&' as a query string separator
bpo-42967: only use '&' as a query string separator (GH-24297) (GH-24532)
bpo-42967: [security] Address a web cache-poisoning issue reported in
urllib.parse.parse_qsl().
urllib.parse will only us "&" as query string separator by default
instead of both ";" and "&" as allowed in earlier versions. An optional
argument seperator with default value "&" is added to specify the
separator.
Change-Id: I8bd6b496bd37e915364dee8a822dfb022071ab5f
Co-authored-by: ?ric Araujo <merwok@netwok.org>
Co-authored-by: Ken Jin <28750310+Fidget-Spinner@users.noreply.github.com>
Co-authored-by: Adam Goldschmidt <adamgold7@gmail.com>
Signed-off-by: JinWang An <jinwang.an@samsung.com>
JinWang An [Tue, 28 Mar 2023 06:57:05 +0000 (15:57 +0900)]
[CVE-2022-0391] urllib_parse newline parsing
Change-Id: I2f6fb8c3ed7bc02716d11952b891331f62f1843f
Signed-off-by: JinWang An <jinwang.an@samsung.com>
JinWang An [Tue, 28 Mar 2023 05:51:35 +0000 (14:51 +0900)]
[CVE-2015-20107] Make mailcap refuse to match unsafe filenames/types/params
Change-Id: I8ea488dc4d67657383097838417639a5d3a31ac3
Signed-off-by: JinWang An <jinwang.an@samsung.com>
Łukasz Stelmach [Mon, 6 Feb 2023 09:43:11 +0000 (10:43 +0100)]
libffi: Fix compilation problems after upgrade
Change-Id: I49bb365826684d3325453647849908e00421ac0a
Signed-off-by: Łukasz Stelmach <l.stelmach@samsung.com>
Łukasz Stelmach [Thu, 18 Aug 2022 14:58:51 +0000 (16:58 +0200)]
packaging: build for riscv64
Change-Id: I4532fd3ad8fd1245dbf409c4b212736f2766cf48
Signed-off-by: Łukasz Stelmach <l.stelmach@samsung.com>
Łukasz Stelmach [Fri, 19 Aug 2022 12:40:44 +0000 (14:40 +0200)]
libffi: adapt Python bits to support RISC-V
Change-Id: Ib3e1b70356b85ad4da137e5aa4d68644b1f71445
Signed-off-by: Łukasz Stelmach <l.stelmach@samsung.com>
Łukasz Stelmach [Fri, 19 Aug 2022 11:41:51 +0000 (13:41 +0200)]
libffi 3.3 with RISC-V support
Change-Id: I7a0af93247037f30fcb3161e52dfee9baf201d4e
Signed-off-by: Łukasz Stelmach <l.stelmach@samsung.com>
Andrey Kazmin [Wed, 31 Mar 2021 12:37:23 +0000 (15:37 +0300)]
Added no_sanitize_hwaddress attribute for PyObject_Free
Change-Id: I52dc2e8c405064463d84201ee3fb8f5291d47c9b
Signed-off-by: Andrey Kazmin <a.kazmin@partner.samsung.com>
DongHun Kwak [Mon, 21 Dec 2020 07:01:31 +0000 (16:01 +0900)]
Add pie compile option
Change-Id: I3bd2e4342a85a5d13887184820ca1432e15dff88
DongHun Kwak [Mon, 14 Dec 2020 00:38:18 +0000 (09:38 +0900)]
Bump to python 2.7.18
Change-Id: I446952c1591b00918a3f6e7609f8a2a05540ee71
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
DongHun Kwak [Tue, 8 Dec 2020 01:59:51 +0000 (10:59 +0900)]
Imported Upstream version 2.7.18
Hyunjee Kim [Mon, 25 Nov 2019 08:02:02 +0000 (17:02 +0900)]
Imported Upstream version 2.7.17
Hyunjee Kim [Mon, 25 Nov 2019 08:01:31 +0000 (17:01 +0900)]
Imported Upstream version 2.7.16
DongHun Kwak [Wed, 22 Aug 2018 06:55:41 +0000 (15:55 +0900)]
Imported Upstream version 2.7.15
Change-Id: Id9c63619cb3e0b8e0af22357474f6f6429c63c61
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
DongHun Kwak [Wed, 22 Aug 2018 06:55:10 +0000 (15:55 +0900)]
Imported Upstream version 2.7.14
Change-Id: Icfe8dc39f6e866f9cdf059cfd57789fed01f9469
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
DongHun Kwak [Wed, 12 Jul 2017 02:06:20 +0000 (11:06 +0900)]
Imported Upstream version 2.7.13
Change-Id: Ide143efb88a819e2d9b350dbcbbfa75b890f0667
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
DongHun Kwak [Wed, 12 Jul 2017 02:05:55 +0000 (11:05 +0900)]
Imported Upstream version 2.7.12
Change-Id: Id086dcc8e315c8ad61502768ef9b92372461e560
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
DongHun Kwak [Wed, 12 Jul 2017 02:05:38 +0000 (11:05 +0900)]
Imported Upstream version 2.7.11
Change-Id: I6fd1d4f1828aa56cf9e1ece97699852529157243
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
DongHun Kwak [Wed, 12 Jul 2017 02:05:23 +0000 (11:05 +0900)]
Imported Upstream version 2.7.10
Change-Id: I71e04a6e83b31198e3aff21913814359e60b7843
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
DongHun Kwak [Wed, 12 Jul 2017 02:04:35 +0000 (11:04 +0900)]
Imported Upstream version 2.7.9
Change-Id: If7320cd9a5b047aa0471ec569221ef7d9bc978b4
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
Chanho Park [Tue, 19 Aug 2014 10:35:08 +0000 (19:35 +0900)]
Imported Upstream version 2.7.8
Anas Nashif [Wed, 7 Nov 2012 15:15:08 +0000 (07:15 -0800)]
Imported Upstream version 2.7.3