Byambadalai Sumiya discovered that SimpleEval, a library for adding evaluatable expressions into Python projects, didn't fully restrict some module references, resulting in sandbox bypass. For Debian 11 bullseye, this problem has been fixed in version 0.9.10-1+deb11u1.. ------------------------------------------------------------------------- Debian LTS Advisory DLA-4543-1
Byambadalai Sumiya discovered that SimpleEval, a library for adding evaluatable expressions into Python projects, didn't fully restrict some module references, resulting in sandbox bypass. For the oldstable distribution (bookworm), this problem has been fixed in version 0.9.12-1+deb12u1.. - ------------------------------------------------------------------------- Debian Security Advisory DSA-6220-1
Get the latest Linux and open source security news straight to your inbox.