This issue tracker has been migrated to GitHub, and is currently read-only.
For more information, see the GitHub FAQs in the Python's Developer Guide.

Author vstinner
Recipients christian.heimes, rschiron, vstinner
Date 2020-01-15.10:06:21
SpamBayes Score -1.0
Marked as misclassified Yes
Message-id <1579082781.72.0.0967802895612.issue39341@roundup.psfhosted.org>
In-reply-to
Content
Amit Laish reported the exact same vulnerability to rubyzip and they released a fix for it, CVE-2019-16892.
History
Date User Action Args
2020-01-15 10:06:21vstinnersetrecipients: + vstinner, christian.heimes, rschiron
2020-01-15 10:06:21vstinnersetmessageid: <1579082781.72.0.0967802895612.issue39341@roundup.psfhosted.org>
2020-01-15 10:06:21vstinnerlinkissue39341 messages
2020-01-15 10:06:21vstinnercreate