[issue34656] [CVE-2018-20406] memory exhaustion in Modules/_pickle.c:1393

Matej Cepl report at bugs.python.org
Wed Jan 23 12:24:30 EST 2019


Matej Cepl <mcepl at cepl.eu> added the comment:

Python 3.4 doesn't allow C99 constructs, so I had to update the patch to reorder iterator declarations. Just if any future colleague Python Linux distro maintainer needs it.

----------
Added file: https://bugs.python.org/file48073/CVE-2018-20406-pickle_LONG_BINPUT.patch

_______________________________________
Python tracker <report at bugs.python.org>
<https://bugs.python.org/issue34656>
_______________________________________


More information about the Python-bugs-list mailing list