diff options
author | 2021-02-27 13:38:44 +0100 | |
---|---|---|
committer | 2021-02-27 16:55:28 +0100 | |
commit | 0e60a9aa835a2141d4f8e382dc736862a29f6e7f (patch) | |
tree | 21adfcfe5780fd0d9377f94d47e7fca4694a5fe0 /package/patchelf/0005-Avoid-inflating-file-sizes-needlessly-and-allow-bina.patch | |
parent | 908d96717051c5b57566638c7566372553c6e148 (diff) | |
download | buildroot-master.tar.gz buildroot-master.tar.bz2 |
Fixes the following security issue:
CVE-2021-21330: Open redirect vulnerability in aiohttp
(normalize_path_middleware middleware)
Beast Glatisant and Jelmer Vernooij reported that python-aiohttp, a async
HTTP client/server framework, is prone to an open redirect vulnerability. A
maliciously crafted link to an aiohttp-based web-server could redirect the
browser to a different website.
For more details, see the advisory:
https://github.com/aio-libs/aiohttp/security/advisories/GHSA-v6wp-4m6f-gcjg
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
Diffstat (limited to 'package/patchelf/0005-Avoid-inflating-file-sizes-needlessly-and-allow-bina.patch')
0 files changed, 0 insertions, 0 deletions