– New upstream release (73.0.1)
Comment

This update backports a patch for CVE-2020-8112.

It was discovered that pysaml2, a Python implementation of SAML to be used in a WSGI environment, was susceptible to XML signature wrapping attacks, which could result in a bypass of signature verification.

Multiple security issues were discovered in Pillow, a Python imaging library, which could result in denial of service and potentially the execution of arbitrary code if malformed PCX, FLI, SGI or TIFF images are processed.
51 queries. 9 mb Memory usage. 0.256 seconds.