[issue41712] REDoS in purge

Zachary Ware report at bugs.python.org
Fri Sep 4 11:43:43 EDT 2020


Zachary Ware <zachary.ware at gmail.com> added the comment:

Does it matter?  This is not a library, it is a script used occasionally by a release manager, called manually, and the only input to the regex is provided via a command-line argument in that manual call.  I don't think Steve plans to REDoS himself :)

----------
components: +Installation, Windows -Library (Lib)
nosy: +paul.moore, steve.dower, tim.golden, zach.ware
type: security -> behavior

_______________________________________
Python tracker <report at bugs.python.org>
<https://bugs.python.org/issue41712>
_______________________________________


More information about the Python-bugs-list mailing list