aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLev Lamberov <dogsleg@debian.org>2020-10-21 10:06:44 +0500
committerLev Lamberov <dogsleg@debian.org>2020-10-21 10:06:44 +0500
commit47ed719741866bf1f4d6a0b2a4d1fc150669ebcc (patch)
tree02997bdc64465284bd54cab30133c2c4ae4ba173
parent7abec7b84c0b87a48c40352b6c19775c91833576 (diff)
[SECURITY] [DSA 4775-1] python-flask-cors security update
-rw-r--r--english/security/2020/dsa-4775.data13
-rw-r--r--english/security/2020/dsa-4775.wml20
2 files changed, 33 insertions, 0 deletions
diff --git a/english/security/2020/dsa-4775.data b/english/security/2020/dsa-4775.data
new file mode 100644
index 00000000000..f26a28306e3
--- /dev/null
+++ b/english/security/2020/dsa-4775.data
@@ -0,0 +1,13 @@
+<define-tag pagetitle>DSA-4775-1 python-flask-cors</define-tag>
+<define-tag report_date>2020-10-19</define-tag>
+<define-tag secrefs>CVE-2020-25032 Bug#969362</define-tag>
+<define-tag packages>python-flask-cors</define-tag>
+<define-tag isvulnerable>yes</define-tag>
+<define-tag fixed>yes</define-tag>
+<define-tag fixed-section>no</define-tag>
+
+#use wml::debian::security
+
+
+
+</dl>
diff --git a/english/security/2020/dsa-4775.wml b/english/security/2020/dsa-4775.wml
new file mode 100644
index 00000000000..d01408a7f73
--- /dev/null
+++ b/english/security/2020/dsa-4775.wml
@@ -0,0 +1,20 @@
+<define-tag description>security update</define-tag>
+<define-tag moreinfo>
+<p>A directory traversal vulnerability was discovered in python-flask-cors,
+a Flask extension for handling Cross Origin Resource Sharing (CORS),
+allowing to access private resources.</p>
+
+<p>For the stable distribution (buster), this problem has been fixed in
+version 3.0.7-1+deb10u1.</p>
+
+<p>We recommend that you upgrade your python-flask-cors packages.</p>
+
+<p>For the detailed security status of python-flask-cors please refer to
+its security tracker page at:
+<a href="https://security-tracker.debian.org/tracker/python-flask-cors">\
+https://security-tracker.debian.org/tracker/python-flask-cors</a></p>
+</define-tag>
+
+# do not modify the following line
+#include "$(ENGLISHDIR)/security/2020/dsa-4775.data"
+# $Id: $

© 2014-2024 Faster IT GmbH | imprint | privacy policy