UbuntuUpdates.org

Package "python3-renderpm"

Name: python3-renderpm

Description:

python low level render interface

Latest version: 3.5.34-1ubuntu1.1
Release: focal (20.04)
Level: security
Repository: main
Head package: python-reportlab
Homepage: https://www.reportlab.com/opensource/

Links


Download "python3-renderpm"


Other versions of "python3-renderpm" in Focal

Repository Area Version
base main 3.5.34-1ubuntu1
updates main 3.5.34-1ubuntu1.1

Changelog

Version: 3.5.34-1ubuntu1.1 2023-07-03 13:10:07 UTC

  python-reportlab (3.5.34-1ubuntu1.1) focal-security; urgency=medium

  * SECURITY UPDATE: Arbitrary code execution
    - debian/patches/CVE-2023-33733.patch: implements a safer
      toColor in src/reportlab/lib/colors.py,
      src/reportlab/lib/rl_safe_eval.py,
      src/reportlab/lib/utils.py,
      src/reportlab/rl_settings.py, tests/test_lib_rl_safe_eval.py.
    - CVE-2023-33733

 -- Leonidas Da Silva Barbosa <email address hidden> Mon, 26 Jun 2023 10:38:43 -0300

CVE-2023-33733 Reportlab up to v3.6.12 allows attackers to execute arbitrary code via supplying a crafted PDF file.



About   -   Send Feedback to @ubuntu_updates