File _patchinfo of Package patchinfo
<patchinfo incident="10879"> <issue tracker="bnc" id="1141853">VUL-0: CVE-2018-20852: python,python3,python27: http.cookiejar.DefaultPolicy.domain_return_ok in Lib/http/cookiejar.py in Python before 3.7.3 does not correctly validate the domain: it can be tricked into sending cookies to the wrong server</issue> <issue tracker="cve" id="2018-20852"/> <packager>mcepl</packager> <rating>moderate</rating> <category>security</category> <summary>Security update for python</summary> <description>This update for python fixes the following issues: - CVE-2018-20852: Fixed an information leak where cookies could be send to the wrong server because of incorrect domain validation (bsc#1141853). This update was imported from the SUSE:SLE-15:Update update project.</description> </patchinfo>




