diff options
author | Georg Brandl <georg@python.org> | 2014-09-30 12:04:51 (GMT) |
---|---|---|
committer | Georg Brandl <georg@python.org> | 2014-09-30 12:04:51 (GMT) |
commit | ec3c103520a5061e657581b388e2b8ba6f74602a (patch) | |
tree | c772344d220e21c83b181972a0e22e9caf8180ba /Lib/http | |
parent | 79690ac1d0b25c048768e9d3870b475e235f9e7a (diff) | |
download | cpython-ec3c103520a5061e657581b388e2b8ba6f74602a.zip cpython-ec3c103520a5061e657581b388e2b8ba6f74602a.tar.gz cpython-ec3c103520a5061e657581b388e2b8ba6f74602a.tar.bz2 |
Issue #18709: Fix CVE-2013-4238. The SSL module now handles NULL bytes
inside subjectAltName correctly. Formerly the module has used OpenSSL's
GENERAL_NAME_print() function to get the string represention of ASN.1
strings for ``rfc822Name`` (email), ``dNSName`` (DNS) and
``uniformResourceIdentifier`` (URI).
Diffstat (limited to 'Lib/http')
0 files changed, 0 insertions, 0 deletions