Release python3-webob-1.8.7-2.1.el8ost ALSA-2024:9989
- Dominant language
- No language data
- Stars
- 2
- Forks
- 0
- PR merge metrics
- No merged PRs in 30d
Description
ALOSP 17.1.4 (python-webob) security update
Severity: moderate
Description
WebOb provides wrappers around the WSGI request environment, and an object
to help create WSGI responses. The objects map much of the specified
behavior of HTTP, including header parsing and accessors for other standard
parts of the environment.
Security Fix(es):
* WebOb's location header normalization during redirect leads to open
redirect (CVE-2024-42353)
For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page listed in the References section.
Affected packages:
python3-webob-1.8.7-2.1.el8ost.noarch
Contributor guide
Assessment
This issue has not been assessed yet.