]> git.ipfire.org Git - thirdparty/Python/cpython.git/commit
[3.9] bpo-39017: Avoid infinite loop in the tarfile module (GH-21454) (GH-21482)
authorMiss Islington (bot) <31488909+miss-islington@users.noreply.github.com>
Wed, 15 Jul 2020 12:30:33 +0000 (05:30 -0700)
committerGitHub <noreply@github.com>
Wed, 15 Jul 2020 12:30:33 +0000 (05:30 -0700)
commitf3232294ee695492f43d424cc6969d018d49861d
treebc2a7128a5a8f258eb926ec785aa04caf367050d
parent805874a9f1c3840bd4f61f9b6a7a7eebae7bae8e
[3.9] bpo-39017: Avoid infinite loop in the tarfile module (GH-21454) (GH-21482)

Avoid infinite loop when reading specially crafted TAR files using the tarfile module
(CVE-2019-20907).
(cherry picked from commit 5a8d121a1f3ef5ad7c105ee378cc79a3eac0c7d4)

Co-authored-by: Rishi <rishi_devan@mail.com>
Automerge-Triggered-By: @encukou
Lib/tarfile.py
Lib/test/recursion.tar [new file with mode: 0644]
Lib/test/test_tarfile.py
Misc/NEWS.d/next/Library/2020-07-12-22-16-58.bpo-39017.x3Cg-9.rst [new file with mode: 0644]