File _patchinfo of Package patchinfo.42007

<patchinfo incident="42007">
  <packager>mcepl</packager>
  <rating>moderate</rating>
  <category>security</category>
  <summary>Security update for python39</summary>
  <description>This update for python39 fixes the following issues:

* Update to 3.9.25:
- Security
    - gh-137836: Add support of the &#8220;plaintext&#8221; element, RAWTEXT
      elements &#8220;xmp&#8221;, &#8220;iframe&#8221;, &#8220;noembed&#8221; and &#8220;noframes&#8221;, and
      optionally RAWTEXT element &#8220;noscript&#8221; in
      html.parser.HTMLParser.
    - gh-136063: email.message: ensure linear complexity for
      legacy HTTP parameters parsing. Patch by B&#233;n&#233;dikt Tran.
- Library
    - gh-98793: Fix argument typechecks in
      _overlapped.WSAConnect() and
      _overlapped.Overlapped.WSASendTo() functions. bpo-44817:
      Ignore WinError 53 (ERROR_BAD_NETPATH), 65
      (ERROR_NETWORK_ACCESS_DENIED) and 161 (ERROR_BAD_PATHNAME)
      when using ntpath.realpath().
- Core and Builtins
    - gh-120384: Fix an array out of bounds crash in
      list_ass_subscript, which could be invoked via some
      specificly tailored input: including concurrent
      modification of a list object, where one thread assigns
      a slice and another clears it.
    - gh-120298: Fix use-after free in list_richcompare_impl
      which can be invoked via some specificly tailored evil
      input.
</description>
</patchinfo>
openSUSE Build Service is sponsored by