Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Backport staging-24.05] python312Packages.python-multipart: fix CVE-2024-53981 #363660

Closed

Conversation

nix-backports[bot]
Copy link

@nix-backports nix-backports bot commented Dec 9, 2024

Bot-based backport to staging-24.05, triggered by a label in #362621.

  • Before merging, ensure that this backport is acceptable for the release.
    • Even as a non-commiter, if you find that it is not acceptable, leave a comment.

@nix-backports nix-backports bot added the 1.severity: security Issues which raise a security issue, or PRs that fix one label Dec 9, 2024
@dotlambda dotlambda changed the title [Backport staging-24.05] [24.11] python312Packages.python-multipart: fix CVE-2024-53981 [Backport staging-24.05] python312Packages.python-multipart: fix CVE-2024-53981 Dec 10, 2024
@dotlambda
Copy link
Member

@ofborg build python311Packages.python-multipart

Copy link
Member

@vcunat vcunat left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The patches won't apply.

@dotlambda
Copy link
Member

It's a denial of service so we'll leave this unpatched on 24.05.

@dotlambda dotlambda closed this Dec 24, 2024
@dotlambda dotlambda deleted the backport-362621-to-staging-24.05 branch December 24, 2024 14:30
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants