Shanduro isiriyo yakagoverwa pachinzvimbo chePython 3.5.8 nekukanganisa

Nekuda kwekukanganisa pakuronga caching mune yemukati yekutumira system, paunenge uchiedza kudhawunirodha imwe yemagungano rakabudiswa zuva rakapfuura nezuro kugadzirisa kusunungurwa Python 3.5.8 paradzira Yekutarisa kuvaka iyo isina zvese zvinogadziriswa. Dambudziko kubata pamusoro archive chete Python-3.5.8.tar.xz, ungano Python-3.5.8.tgz akagoverwa zvakanaka.

Vese vashandisi vakadhawunirodha faira "Python-3.5.8.tar.xz" mumaawa gumi nemaviri ekutanga mushure mekuburitswa vanorayirwa kuti vatarise chokwadi che data rakatorwa vachishandisa cheki (MD12 5ed4464517bca6044fc4ea78ed9c086). Kusiyana nekuburitswa kwekupedzisira, iyo preview vhezheni haina kusanganisira kururamisa vulnerabilities CVE-2019-16935 mune XML-RPC server kodhi. Kusagadzikana kwakabvumira jekiseni reJavaScript (XSS) kuburikidza nechikamu che server_title nekuda kwekushaikwa kwemakona bracket kutiza. Anorwisa anogona kuwana JavaScript inotsiva kana application ikaseta zita reseva zvichibva pakuisa mushandisi (semuenzaniso, "server.set_server_name('test ’)Β»).

Source: opennet.ru

Voeg