Regular expression denial of service in email_regex. References: - https://bugs.mageia.org/show_bug.cgi?id=29509 - https://lists.fedoraproject.org/archives/list/
Security fix for CVE-2021-32838. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-0739f45529 2021-09-30 01:12:40.914688 --------------------------------------------------------------------------------Name : python-flask-restx Product : Fedora 34 Version : 0.3.0 Release : 2.fc34 URL : https://github.com/python-restx/flask-restx Summary : Framework for fast, easy and documented API development with Flask Description : Flask-RESTX is an extension for Flask that adds support for quickly building REST APIs. It encourages best practices with minimal setup. If you are familiar with Flask, Flask-RESTX should be easy to pick up. It provides a coherent collection of decorators and tools to describe your API and expose its documentation properly using Swagger. --------------------------------------------------------------------------------Update Information: Security fix for CVE-2021-32838 --------------------------------------------------------------------------------ChangeLog: * Wed Sep 22 2021 Jiri Popelka - 0.3.0-2 - optimize email regex - Fixes rhbz#2006119 --------------------------------------------------------------------------------References: [ 1 ] Bug #2006118 - CVE-2021-32838 python-flask-restx: Regular expression denial of service in email_regex https://bugzilla.redhat.com/show_bug.cgi?id=2006118 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-0739f45529' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.