File _patchinfo of Package patchinfo.31596
<patchinfo incident="31596"> <issue tracker="cve" id="2023-5752"/> <issue tracker="bnc" id="1217353">VUL-0: CVE-2023-5752: python-pip,python36-pip,python39-pip: Mercurial configuration injectable in repo revision when installing via pip</issue> <packager>mcepl</packager> <rating>low</rating> <category>security</category> <summary>Security update for python-pip</summary> <description>This update for python-pip fixes the following issues: - CVE-2023-5752: Fixed injection of arbitrary configuration through Mercurial parameter (bsc#1217353). </description> </patchinfo>