File _patchinfo of Package patchinfo.22719
<patchinfo incident="22719"> <issue tracker="cve" id="2021-4189"/> <issue tracker="cve" id="2022-0391"/> <issue tracker="bnc" id="1194146">VUL-0: CVE-2021-4189: python39,python,python36,python3,python27: ftplib should not use the host from the PASV response</issue> <issue tracker="bnc" id="1195396">VUL-0: CVE-2022-0391: python3,python27,python,python36,python39: python: urllib.parse does not sanitize URLs containing ASCII newline and tabs</issue> <packager>mcepl</packager> <rating>moderate</rating> <category>security</category> <summary>Security update for python3</summary> <description>This update for python3 fixes the following issues: - CVE-2021-4189: Fixed default access from PASV response in the FTP client (bsc#1194146). - CVE-2022-0391: Fixed sanitizing of URLs containing ASCII newline and tabs in urlparse (bsc#1195396). </description> </patchinfo>