[Python-modules-team] Bug#953013: marked as done (pyyaml: CVE-2020-1747: arbitrary command execution through python/object/new when FullLoader is used)

Debian Bug Tracking System owner at bugs.debian.org
Sat Mar 7 03:39:09 GMT 2020


Your message dated Sat, 07 Mar 2020 03:34:14 +0000
with message-id <E1jAQEA-00056C-O3 at fasolo.debian.org>
and subject line Bug#953013: fixed in pyyaml 5.3-2
has caused the Debian Bug report #953013,
regarding pyyaml: CVE-2020-1747: arbitrary command execution through python/object/new when FullLoader is used
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact owner at bugs.debian.org
immediately.)


-- 
953013: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=953013
Debian Bug Tracking System
Contact owner at bugs.debian.org with problems
-------------- next part --------------
An embedded message was scrubbed...
From: Salvatore Bonaccorso <carnil at debian.org>
Subject: pyyaml: CVE-2020-1747: arbitrary command execution through python/object/new when FullLoader is used
Date: Tue, 03 Mar 2020 08:29:51 +0100
Size: 2354
URL: <http://alioth-lists.debian.net/pipermail/python-modules-team/attachments/20200307/1463ed12/attachment-0002.mht>
-------------- next part --------------
An embedded message was scrubbed...
From: Debian FTP Masters <ftpmaster at ftp-master.debian.org>
Subject: Bug#953013: fixed in pyyaml 5.3-2
Date: Sat, 07 Mar 2020 03:34:14 +0000
Size: 5765
URL: <http://alioth-lists.debian.net/pipermail/python-modules-team/attachments/20200307/1463ed12/attachment-0003.mht>


More information about the Python-modules-team mailing list