[issue36260] [security] CVE-2019-9674: Zip Bomb vulnerability

2020-02-10 Thread STINNER Victor
STINNER Victor added the comment: I marked bpo-39341 as a duplicate of this issue: "[security] zipfile: ZIP Bomb vulnerability, don't check announced uncompressed size". -- ___ Python tracker __

[issue36260] [security] CVE-2019-9674: Zip Bomb vulnerability

2019-09-11 Thread Jason R. Coombs
Jason R. Coombs added the comment: New changeset c5a672315dffbc95acc1ca28584ec84ddb56626f by Jason R. Coombs (Miss Islington (bot)) in branch '3.8': bpo-36260: Add pitfalls to zipfile module documentation (GH-13378) (GH-15976) https://github.com/python/cpython/commit/c5a672315dffbc95acc1ca285

[issue36260] [security] CVE-2019-9674: Zip Bomb vulnerability

2019-09-11 Thread Jason R. Coombs
Change by Jason R. Coombs : -- nosy: -jaraco resolution: remind -> fixed stage: patch review -> resolved status: open -> closed ___ Python tracker ___

[issue36260] [security] CVE-2019-9674: Zip Bomb vulnerability

2019-09-11 Thread miss-islington
Change by miss-islington : -- pull_requests: +15609 pull_request: https://github.com/python/cpython/pull/15976 ___ Python tracker ___ __

[issue36260] [security] CVE-2019-9674: Zip Bomb vulnerability

2019-09-11 Thread Jason R. Coombs
Jason R. Coombs added the comment: New changeset 3ba51d587f6897a45301ce9126300c14fcd4eba2 by Jason R. Coombs (JunWei Song) in branch 'master': bpo-36260: Add pitfalls to zipfile module documentation (#13378) https://github.com/python/cpython/commit/3ba51d587f6897a45301ce9126300c14fcd4eba2 -

[issue36260] [security] CVE-2019-9674: Zip Bomb vulnerability

2019-05-17 Thread STINNER Victor
Change by STINNER Victor : -- title: Zip Bomb vulnerability -> [security] CVE-2019-9674: Zip Bomb vulnerability ___ Python tracker ___