defusedxml 0.4.1-2ubuntu0.16.04.1 source package in Ubuntu
Changelog
defusedxml (0.4.1-2ubuntu0.16.04.1) xenial-security; urgency=medium * No change rebuild for xenial in support of recent python-pysaml2 security update. -- <email address hidden> (Leonidas S. Barbosa) Thu, 31 Aug 2017 15:10:25 -0300
Upload details
- Uploaded by:
- Leonidas S. Barbosa
- Uploaded to:
- Xenial
- Original maintainer:
- Ubuntu Developers
- Architectures:
- all
- Section:
- python
- Urgency:
- Medium Urgency
See full publishing history Publishing
Series | Published | Component | Section | |
---|---|---|---|---|
Xenial | updates | main | misc | |
Xenial | security | main | misc |
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
defusedxml_0.4.1.orig.tar.gz | 47.7 KiB | cd551d5a518b745407635bb85116eb813818ecaf182e773c35b36239fc3f2478 |
defusedxml_0.4.1-2ubuntu0.16.04.1.debian.tar.xz | 15.3 KiB | 03bbd9ff1da3634a62df99bf4e945b44058367dff53896e6597948091bed883d |
defusedxml_0.4.1-2ubuntu0.16.04.1.dsc | 2.2 KiB | 5618513aa2ab02d47849acf0b4ea10f64e4fce00116a0195c4d2759c042b0b5e |
Available diffs
Binary packages built by this source
- python-defusedxml: XML bomb protection for Python stdlib modules (for Python 2)
The results of an attack on a vulnerable XML library can be fairly dramatic.
With just a few hundred bytes of XML data an attacker can occupy several
gigabytes of memory within seconds. An attacker can also keep
CPUs busy for a long time with a small to medium size request.
.
This library allows for XML to be parsed in a manner that avoids these
pitfalls.
.
This package contains the module for the Python 2 interpreter.
- python3-defusedxml: XML bomb protection for Python stdlib modules (for Python 3)
The results of an attack on a vulnerable XML library can be fairly dramatic.
With just a few hundred bytes of XML data an attacker can occupy several
gigabytes of memory within seconds. An attacker can also keep
CPUs busy for a long time with a small to medium size request.
.
This library allows for XML to be parsed in a manner that avoids these
pitfalls.
.
This package contains the module for the Python 3 interpreter.