[Python-modules-team] Bug#772815: pyyaml: CVE-2014-9130

Moritz Muehlenhoff jmm at inutil.org
Thu Dec 11 11:37:51 UTC 2014


Package: pyyaml
Severity: grave
Tags: security

Hi,
CVE-2014-9130 from libyaml also affects pyyaml. I'm attaching a short
reproducer.

Cheers,
        Moritz
-------------- next part --------------
A non-text attachment was scrubbed...
Name: CVE-2014-9130.py
Type: text/x-java
Size: 167 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/python-modules-team/attachments/20141211/057898c0/attachment.java>
-------------- next part --------------
abc: 
   def: 'xxx
'  ghi: 'yyy'


More information about the Python-modules-team mailing list