Fixes: CVE-2024-47081
Fixed an issue where a maliciously crafted URL and
trusted environment will retrieve credentials for
the wrong hostname/machine from a netrc file.
Release notes: https://github.com/psf/requests/releases/tag/v2.32.4
Signed-off-by: Marcus Hoffmann <buildroot@bubu1.eu>
Signed-off-by: Julien Olivain <ju.o@free.fr>
(cherry picked from commit aefdca1e5c)
Signed-off-by: Thomas Perale <thomas.perale@mind.be>
6 lines
332 B
Plaintext
6 lines
332 B
Plaintext
# md5, sha256 from https://pypi.org/pypi/requests/json
|
|
md5 4a380c14fe0f4465c9dbf79ffacefd8f requests-2.32.4.tar.gz
|
|
sha256 27d0316682c8a29834d3264820024b62a36942083d52caf2f14c0591336d3422 requests-2.32.4.tar.gz
|
|
# Locally computed sha256 checksums
|
|
sha256 09e8a9bcec8067104652c168685ab0931e7868f9c8284b66f5ae6edae5f1130b LICENSE
|