Nwelite Python 3.8.5 nwere adịghị ike edozi

E bipụtara mmezi mmezi nke asụsụ mmemme Python 3.8.5, nke kpochapuru ọtụtụ adịghị ike:

  • CVE-2019-20907 - tarfile modul looping mgbe ị na-agbalị imepe faịlụ ndị ahaziri ahazi n'ụdị tar.
  • BPO-41288 - dara mgbe modul Pickle nwara iji opcode opcode emebere nke ọma NEWOBJ_EX hazie ihe.
  • CVE-2020-15801 - ike iji dochie nkụnye eji isi mee HTTP n'ime arịrịọ site na iji mkpụrụedemede ọhụrụ n'usoro "usoro" nke modul http.client. Ọmụmaatụ: conn.request(usoro =”GET / HTTP/1.1\r\nỌbịa: abc\r\n fọdụrụ:”, url=”/index.html”). Edoziri adịghị ike ahụ na mbụ, mana ekpuchighị ụzọ nchekwa http.client.putrequest.

isi: opennet.ru

Tinye a comment