[Python-modules-team] Bug#954236: Proposed Buster Fix (pyhon3-bleach: New secuirty issue: mutation XSS (again))

Scott Kitterman debian at kitterman.com
Thu Mar 19 04:20:25 GMT 2020


Upstream's 3.1.2 release had just the security fix in it.  I propose updating 
buster with it (I put 3.1.3 in unstable, but it had non-security fixes in it.

I'm not 100% sure about if we need to modify the import path for the new test 
since we don't use the vendored html5lib, but other than that (which I will 
investigate), this should be good.

Scott K
-------------- next part --------------
A non-text attachment was scrubbed...
Name: python-bleach.buster.3_1_2.debdiff
Type: text/x-patch
Size: 5678 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/python-modules-team/attachments/20200319/50f171fe/attachment-0001.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: This is a digitally signed message part.
URL: <http://alioth-lists.debian.net/pipermail/python-modules-team/attachments/20200319/50f171fe/attachment-0001.sig>


More information about the Python-modules-team mailing list