EPISODE · Oct 10, 2022 · 34 MIN
Episode 344 - Python tarfile - 2022 is nothing like 2007
from Open Source Security
Josh and Kurt talk about a newly rediscovered old python vulnerability. It raises a lot of questions about what was OK in 2007 vs what's OK in 2022. The issue is very complicated and has a wild story surrounding it. There is no reason to not fix this in 2022. Show Notes CVE-2007-4559 Red Hat Bug Register story Response from upstream Upstream patch ZippSlip Current upstream bug CSURF
NOW PLAYING
Episode 344 - Python tarfile - 2022 is nothing like 2007
No transcript for this episode yet
Similar Episodes
Feb 18, 2026 ·26m
Jul 24, 2025 ·73m
Nov 3, 2024 ·52m
Sep 26, 2024 ·67m
Sep 16, 2024 ·139m
Aug 14, 2024 ·76m