[issue14234] CVE-2012-0876 (hash table collisions CPU usage DoS) for embedded copy of expat

Gregory P. Smith report at bugs.python.org
Wed Mar 14 23:31:33 CET 2012


Gregory P. Smith <greg at krypto.org> added the comment:

the fix is in the 3.1, 3.2, 3.3 and 2.7 trees.

It still need applying to the 2.6 branch (it applies cleanly other than Misc/NEWS); I'll let Barry do that one.

New rc2 release candidates should be made.  Otherwise I think we're ready for the releases.

I'm keeping this open until 2.6 is fixed.

----------
assignee: gregory.p.smith -> barry
versions:  -Python 3.4

_______________________________________
Python tracker <report at bugs.python.org>
<http://bugs.python.org/issue14234>
_______________________________________


More information about the Python-bugs-list mailing list