Untriaged
Header injection via newlines in data URL mediatype
User-controlled data URLs parsed by urllib.request.DataHandler allow injecting headers through newlines in the data URL mediatype.
References
- https://github.com/python/cpython/pull/143926 patch
- https://github.com/python/cpython/issues/143925 issue-tracking
- https://mail.python.org/archives/list/security-announce@python.org/thread/X66HL… vendor-advisory
- https://github.com/python/cpython/commit/f25509e78e8be6ea73c811ac2b8c928c28841b… patch
- https://github.com/python/cpython/pull/143926 patch
- https://github.com/python/cpython/issues/143925 issue-tracking
- https://mail.python.org/archives/list/security-announce@python.org/thread/X66HL… vendor-advisory
- https://github.com/python/cpython/commit/f25509e78e8be6ea73c811ac2b8c928c28841b… patch
- https://github.com/python/cpython/commit/f25509e78e8be6ea73c811ac2b8c928c28841b… patch
- https://github.com/python/cpython/commit/05356b1cc153108aaf27f3b72ce438af4aa218… patch
- https://github.com/python/cpython/pull/143926 patch
- https://github.com/python/cpython/issues/143925 issue-tracking
- https://mail.python.org/archives/list/security-announce@python.org/thread/X66HL… vendor-advisory
- https://github.com/python/cpython/pull/143926 patch
- https://github.com/python/cpython/issues/143925 issue-tracking
- https://mail.python.org/archives/list/security-announce@python.org/thread/X66HL… vendor-advisory
- https://github.com/python/cpython/commit/f25509e78e8be6ea73c811ac2b8c928c28841b… patch
- https://github.com/python/cpython/commit/05356b1cc153108aaf27f3b72ce438af4aa218… patch
- https://github.com/python/cpython/commit/34d76b00dabde81a793bd06dd8ecb057838c4b… patch
- https://github.com/python/cpython/commit/3f396ca9d7bbe2a50ea6b8c9b27c0082884d9f… patch
- https://github.com/python/cpython/commit/4ed11d3cd288e6b90196a15c5a825a45d318fe… patch
- https://github.com/python/cpython/commit/a35ca3be5842505dab74dc0b90b89cde040501… patch
- https://github.com/python/cpython/pull/143926 patch
- https://github.com/python/cpython/issues/143925 issue-tracking
- https://mail.python.org/archives/list/security-announce@python.org/thread/X66HL… vendor-advisory
- https://github.com/python/cpython/commit/f25509e78e8be6ea73c811ac2b8c928c28841b… patch
- https://github.com/python/cpython/commit/05356b1cc153108aaf27f3b72ce438af4aa218… patch
- https://github.com/python/cpython/commit/34d76b00dabde81a793bd06dd8ecb057838c4b… patch
- https://github.com/python/cpython/commit/3f396ca9d7bbe2a50ea6b8c9b27c0082884d9f… patch
- https://github.com/python/cpython/commit/4ed11d3cd288e6b90196a15c5a825a45d318fe… patch
- https://github.com/python/cpython/commit/a35ca3be5842505dab74dc0b90b89cde040501… patch
- https://github.com/python/cpython/pull/143926 patch
- https://github.com/python/cpython/issues/143925 issue-tracking
- https://mail.python.org/archives/list/security-announce@python.org/thread/X66HL… vendor-advisory
- https://github.com/python/cpython/commit/f25509e78e8be6ea73c811ac2b8c928c28841b… patch
- https://github.com/python/cpython/commit/05356b1cc153108aaf27f3b72ce438af4aa218… patch
- https://github.com/python/cpython/commit/34d76b00dabde81a793bd06dd8ecb057838c4b… patch
- https://github.com/python/cpython/commit/3f396ca9d7bbe2a50ea6b8c9b27c0082884d9f… patch
- https://github.com/python/cpython/commit/4ed11d3cd288e6b90196a15c5a825a45d318fe… patch
- https://github.com/python/cpython/commit/a35ca3be5842505dab74dc0b90b89cde040501… patch
Affected products
CPython
- <3.13.12
- <3.14.3
- <3.15.0a6
- <3.15.0
Matching in nixpkgs
pkgs.haskellPackages.cpython
Bindings for libpython
Package maintainers
-
@sheepforce Phillip Seeber <phillip.seeber@googlemail.com>