This update backports the upstream fixes for CVE-2023-30608 and CVE-2024-4340. It also enables the test suite and corrects the SPDX license identifier.
This update has been submitted for testing by carlwgeorge.
BZ#2402810 CVE-2023-30608 python-sqlparse: sqlparse: Parser contains a regular expression that is vulnerable to ReDOS (Regular Expression Denial of Service) [epel-9]
0
0
BZ#2402811 CVE-2024-4340 python-sqlparse: sqlparse: parsing heavily nested list leads to denial of service [epel-9]
This update has been submitted for testing by carlwgeorge.
This update's test gating status has been changed to 'ignored'.
carlwgeorge edited this update.
This update has been pushed to testing.
This update has been submitted for stable by bodhi.
This update has been pushed to stable.