File CVE-2022-47950.diff of Package openstack-swift
--- ./swift/common/middleware/s3api/etree.py 2021-12-21 19:18:05.000000000 +0000 +++ ./swift/common/middleware/s3api/etree.py 2023-01-16 15:31:02.520815880 +0000 @@ -127,7 +127,7 @@ parser_lookup = lxml.etree.ElementDefaultClassLookup(element=_Element) -parser = lxml.etree.XMLParser() +parser = lxml.etree.XMLParser(resolve_entities=False, no_network=True) parser.set_element_class_lookup(parser_lookup) Element = parser.makeelement