File _patchinfo of Package patchinfo.16829
<patchinfo incident="16829">
<issue tracker="cve" id="2020-26116"/>
<issue tracker="bnc" id="1177211">VUL-1: CVE-2020-26116: python,python36,python3,python27,python-urllib3: CRLF injection via HTTP request method in httplib/http.client</issue>
<packager>StevenK</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for python</summary>
<description>This update for python fixes the following issues:
- bsc#1177211 (CVE-2020-26116) no longer allowing special characters in the method parameter
of HTTPConnection.putrequest in httplib, stopping injection of headers.
</description>
</patchinfo>