python-urllib3 2.0.7-ok3 source package in openKylin
Changelog
python-urllib3 (2.0.7-ok3) nile; urgency=medium
* SECURITY UPDATE: The Proxy-Authorization header is not correctly
stripped when redirecting to a different host. -
debian/patches/CVE-2024-37891.patch: Add Proxy-Authorization to
DEFAULT_REMOVE_HEADERS_ON_REDIRECT in src/urllib3/util/retry.py. Add
header to tests. - CVE-2024-37891 * Skip failing test causing
build-time failures: (LP: #2084715) - debian/rules: Add not
test_recent_date to PYBUILD_TEST_ARGS.
-- liubo01 <email address hidden> Tue, 05 Nov 2024 09:23:22 +0800