]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
python3-xmltodict: fix CVE-2025-9375
authorSaravanan <saravanan.kadambathursubramaniyam@windriver.com>
Mon, 13 Oct 2025 11:52:44 +0000 (17:22 +0530)
committerSteve Sakoman <steve@sakoman.com>
Mon, 13 Oct 2025 19:47:59 +0000 (12:47 -0700)
commit30624cce634cade0b030aa71a03be754abbf3da9
tree3a091eb94854d2319bd933d62cf7bf921062a7f3
parent4bab523ed8ee34e8c09deb631fc82417aa0784b9
python3-xmltodict: fix CVE-2025-9375

Reference:
https://nvd.nist.gov/vuln/detail/CVE-2025-9375
https://security-tracker.debian.org/tracker/CVE-2025-9375
https://git.launchpad.net/ubuntu/+source/python-xmltodict/commit/?id=e8110a20e00d80db31d5fc9f8f4577328385d6b6

Upstream-patch:
https://github.com/martinblech/xmltodict/commit/ecd456ab88d379514b116ef9293318b74e5ed3ee
https://github.com/martinblech/xmltodict/commit/f98c90f071228ed73df997807298e1df4f790c33

Signed-off-by: Saravanan <saravanan.kadambathursubramaniyam@windriver.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-devtools/python/python3-xmltodict/CVE-2025-9375-1.patch [new file with mode: 0644]
meta/recipes-devtools/python/python3-xmltodict/CVE-2025-9375-2.patch [new file with mode: 0644]
meta/recipes-devtools/python/python3-xmltodict_0.13.0.bb