File _patchinfo of Package patchinfo.23810
<patchinfo incident="23810">
<issue tracker="cve" id="2018-18074"/>
<issue tracker="bnc" id="1111622">VUL-0: CVE-2018-18074: python-requests: The Requests package sends an HTTP Authorization header to an http URI upon receiving a same-hostname https-to-http redirect</issue>
<packager>mcepl</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for python-requests</summary>
<description>This update for python-requests fixes the following issues:
- CVE-2018-18074: Fixed to prevent the package to send an HTTP Authorization header to an http URI
upon receiving a same-hostname https-to-http redirect. (bsc#1111622)
</description>
</patchinfo>