diff options
author | Gregory P. Smith <greg@krypto.org> | 2019-05-01 20:39:21 (GMT) |
---|---|---|
committer | GitHub <noreply@github.com> | 2019-05-01 20:39:21 (GMT) |
commit | b7378d77289c911ca6a0c0afaf513879002df7d5 (patch) | |
tree | 1102bd7d38307fbaf3d32ee3299ee43a1a64b775 /Misc/NEWS.d/next/Security/2019-04-10-08-53-30.bpo-36276.51E-DA.rst | |
parent | e1d5dd645d5f59867cb0ad63179110f310cbca89 (diff) | |
download | cpython-b7378d77289c911ca6a0c0afaf513879002df7d5.zip cpython-b7378d77289c911ca6a0c0afaf513879002df7d5.tar.gz cpython-b7378d77289c911ca6a0c0afaf513879002df7d5.tar.bz2 |
bpo-30458: Use InvalidURL instead of ValueError. (GH-13044)
Use http.client.InvalidURL instead of ValueError as the new error case's exception.
Diffstat (limited to 'Misc/NEWS.d/next/Security/2019-04-10-08-53-30.bpo-36276.51E-DA.rst')
-rw-r--r-- | Misc/NEWS.d/next/Security/2019-04-10-08-53-30.bpo-36276.51E-DA.rst | 1 |
1 files changed, 0 insertions, 1 deletions
diff --git a/Misc/NEWS.d/next/Security/2019-04-10-08-53-30.bpo-36276.51E-DA.rst b/Misc/NEWS.d/next/Security/2019-04-10-08-53-30.bpo-36276.51E-DA.rst deleted file mode 100644 index 4fed4d5..0000000 --- a/Misc/NEWS.d/next/Security/2019-04-10-08-53-30.bpo-36276.51E-DA.rst +++ /dev/null @@ -1 +0,0 @@ -Address CVE-2019-9740 by disallowing URL paths with embedded whitespace or control characters through into the underlying http client request. Such potentially malicious header injection URLs now cause a ValueError to be raised.
\ No newline at end of file |