EPISODE · Oct 10, 2022 · 34 MIN
Episode 344 - Python tarfile - 2022 is nothing like 2007
from Open Source Security
Josh and Kurt talk about a newly rediscovered old python vulnerability. It raises a lot of questions about what was OK in 2007 vs what's OK in 2022. The issue is very complicated and has a wild story surrounding it. There is no reason to not fix this in 2022. Show Notes CVE-2007-4559 Red Hat Bug Register story Response from upstream Upstream patch ZippSlip Current upstream bug CSURF
NOW PLAYING
Episode 344 - Python tarfile - 2022 is nothing like 2007
No transcript for this episode yet
Similar Episodes
Mar 28, 2024 ·61m
Mar 21, 2024 ·59m
Mar 7, 2024 ·69m
Feb 29, 2024 ·84m