[issue17239] XML vulnerabilities in Python

Steve Dower report at bugs.python.org
Mon Sep 17 18:27:15 EDT 2018


Steve Dower <steve.dower at python.org> added the comment:

Any reason to not take the current patch for our vendored copy and give it some exposure at least on platforms that rely on it (maybe just Windows)? I don't see any reason to wait on another group to "release" it when we need to manually apply the update to our own repo anyway.

Platforms using system libexpat that hasn't been patched have obviously decided not to patch it themselves :)

----------

_______________________________________
Python tracker <report at bugs.python.org>
<https://bugs.python.org/issue17239>
_______________________________________


More information about the Python-bugs-list mailing list