diff options
author | Gregory P. Smith <greg@krypto.org> | 2012-03-14 21:58:22 (GMT) |
---|---|---|
committer | Gregory P. Smith <greg@krypto.org> | 2012-03-14 21:58:22 (GMT) |
commit | 1be7cd0a7860851bdf4079d58583cc1a66c9ae63 (patch) | |
tree | b535bd4460dea8cfe14ed4d9da5f0fee6e0644d2 | |
parent | 8e91cf6a5e5be8f84132498d5654d6ad2e4d54c2 (diff) | |
download | cpython-1be7cd0a7860851bdf4079d58583cc1a66c9ae63.zip cpython-1be7cd0a7860851bdf4079d58583cc1a66c9ae63.tar.gz cpython-1be7cd0a7860851bdf4079d58583cc1a66c9ae63.tar.bz2 |
move the Misc/NEWS entry to the right section.
-rw-r--r-- | Misc/NEWS | 6 |
1 files changed, 3 insertions, 3 deletions
@@ -15,14 +15,14 @@ Core and Builtins service attacks due to hash collisions within the dict and set types. Patch by David Malcolm, based on work by Victor Stinner. +Library +------- + - Issue #14234: CVE-2012-0876: Randomize hashes of xml attributes in the hash table internal to the pyexpat module's copy of the expat library to avoid a denial of service due to hash collisions. Patch by David Malcolm with some modifications by the expat project. -Library -------- - - Issue #14001: CVE-2012-0845: xmlrpc: Fix an endless loop in SimpleXMLRPCServer upon malformed POST request. |