<feed xmlns='http://www.w3.org/2005/Atom'>
<title>delta/cpython-git.git, branch 3.5</title>
<subtitle>github.com: python/cpython.git
</subtitle>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/cpython-git.git/'/>
<entry>
<title>Post-release update for 3.5.10.</title>
<updated>2020-09-05T09:04:10+00:00</updated>
<author>
<name>Larry Hastings</name>
<email>larry@hastings.org</email>
</author>
<published>2020-09-05T09:04:10+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/cpython-git.git/commit/?id=75c1ca7b6c546ef674eb40bfe47f41e6045dc99b'/>
<id>75c1ca7b6c546ef674eb40bfe47f41e6045dc99b</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Version bump for 3.5.10.</title>
<updated>2020-09-05T07:22:07+00:00</updated>
<author>
<name>Larry Hastings</name>
<email>larry@hastings.org</email>
</author>
<published>2020-09-05T07:22:07+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/cpython-git.git/commit/?id=426b022776672fdf3d71ddd98d89af341c88080f'/>
<id>426b022776672fdf3d71ddd98d89af341c88080f</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Blurb release and pydoc topics for 3.5.10.</title>
<updated>2020-09-05T07:21:11+00:00</updated>
<author>
<name>Larry Hastings</name>
<email>larry@hastings.org</email>
</author>
<published>2020-09-05T07:21:11+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/cpython-git.git/commit/?id=f2f17bd54c0121d4a6f6fd88c64c963e9b3b0ba1'/>
<id>f2f17bd54c0121d4a6f6fd88c64c963e9b3b0ba1</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>bpo-39603: Prevent header injection in http methods (GH-18485) (#21946)</title>
<updated>2020-09-04T00:54:15+00:00</updated>
<author>
<name>Victor Stinner</name>
<email>vstinner@python.org</email>
</author>
<published>2020-09-04T00:54:15+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/cpython-git.git/commit/?id=524b8de630036a29ca340bc2ae6fd6dc7dda8f40'/>
<id>524b8de630036a29ca340bc2ae6fd6dc7dda8f40</id>
<content type='text'>
reject control chars in http method in http.client.putrequest to prevent http header injection

(cherry picked from commit 8ca8a2e8fb068863c1138f07e3098478ef8be12e)

Co-authored-by: AMIR &lt;31338382+amiremohamadi@users.noreply.github.com&gt;</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
reject control chars in http method in http.client.putrequest to prevent http header injection

(cherry picked from commit 8ca8a2e8fb068863c1138f07e3098478ef8be12e)

Co-authored-by: AMIR &lt;31338382+amiremohamadi@users.noreply.github.com&gt;</pre>
</div>
</content>
</entry>
<entry>
<title>Post-release update for 3.5.10rc1.</title>
<updated>2020-08-22T02:56:06+00:00</updated>
<author>
<name>Larry Hastings</name>
<email>larry@hastings.org</email>
</author>
<published>2020-08-22T02:56:06+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/cpython-git.git/commit/?id=6c065594c720fdd4783a4284cb9f2eebcb2c10bd'/>
<id>6c065594c720fdd4783a4284cb9f2eebcb2c10bd</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Version bump and copyright update for 3.5.10rc1.</title>
<updated>2020-08-19T19:56:53+00:00</updated>
<author>
<name>Larry Hastings</name>
<email>larry@hastings.org</email>
</author>
<published>2020-08-19T19:56:53+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/cpython-git.git/commit/?id=e53c98563824cbb2f296f1de1f2185a7b5271cd6'/>
<id>e53c98563824cbb2f296f1de1f2185a7b5271cd6</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Blurb release and pydoc topics for 3.5.10rc1.</title>
<updated>2020-08-19T19:51:35+00:00</updated>
<author>
<name>Larry Hastings</name>
<email>larry@hastings.org</email>
</author>
<published>2020-08-19T19:51:35+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/cpython-git.git/commit/?id=45efe034e66973c8702b8bbbcac041c873aa5da3'/>
<id>45efe034e66973c8702b8bbbcac041c873aa5da3</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>[3.5] bpo-41004: Resolve hash collisions for IPv4Interface and IPv6Interface (GH-21033) (#21233)</title>
<updated>2020-08-04T02:33:30+00:00</updated>
<author>
<name>Tapas Kundu</name>
<email>39723251+tapakund@users.noreply.github.com</email>
</author>
<published>2020-08-04T02:33:30+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/cpython-git.git/commit/?id=11d258ceafdf60ab3840f9a5700f2d0ad3e2e2d1'/>
<id>11d258ceafdf60ab3840f9a5700f2d0ad3e2e2d1</id>
<content type='text'>
CVE-2020-14422: The __hash__() methods of classes IPv4Interface and IPv6Interface had issue
of generating constant hash values of 32 and 128 respectively causing hash collisions.
The fix uses the hash() function to generate hash values for the objects
instead of XOR operation.

(cherry picked from commit b30ee26e366bf509b7538d79bfec6c6d38d53f28)

Co-authored-by: Ravi Teja P &lt;rvteja92@gmail.com&gt;

Signed-off-by: Tapas Kundu &lt;tkundu@vmware.com&gt;</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
CVE-2020-14422: The __hash__() methods of classes IPv4Interface and IPv6Interface had issue
of generating constant hash values of 32 and 128 respectively causing hash collisions.
The fix uses the hash() function to generate hash values for the objects
instead of XOR operation.

(cherry picked from commit b30ee26e366bf509b7538d79bfec6c6d38d53f28)

Co-authored-by: Ravi Teja P &lt;rvteja92@gmail.com&gt;

Signed-off-by: Tapas Kundu &lt;tkundu@vmware.com&gt;</pre>
</div>
</content>
</entry>
<entry>
<title>[3.5] bpo-29778: Ensure python3.dll is loaded from correct locations when Python is embedded (GH-21297) (#21377)</title>
<updated>2020-08-04T02:16:20+00:00</updated>
<author>
<name>Steve Dower</name>
<email>steve.dower@python.org</email>
</author>
<published>2020-08-04T02:16:20+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/cpython-git.git/commit/?id=f205f1000a2d7f8b044caf281041b3705f293480'/>
<id>f205f1000a2d7f8b044caf281041b3705f293480</id>
<content type='text'>
bpo-29778: Ensure python3.dll is loaded from correct locations when Python is embedded.</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
bpo-29778: Ensure python3.dll is loaded from correct locations when Python is embedded.</pre>
</div>
</content>
</entry>
<entry>
<title>[3.5] bpo-39017: Avoid infinite loop in the tarfile module (GH-21454) (#21489)</title>
<updated>2020-07-16T19:48:01+00:00</updated>
<author>
<name>Petr Viktorin</name>
<email>encukou@gmail.com</email>
</author>
<published>2020-07-16T19:48:01+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/cpython-git.git/commit/?id=cac9ca8ed99bd98f4c0dcd1913a146192bf5ee84'/>
<id>cac9ca8ed99bd98f4c0dcd1913a146192bf5ee84</id>
<content type='text'>
Avoid infinite loop when reading specially crafted TAR files using the tarfile module
(CVE-2019-20907).
(cherry picked from commit 5a8d121a1f3ef5ad7c105ee378cc79a3eac0c7d4)

Co-authored-by: Rishi &lt;rishi_devan@mail.com&gt;</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Avoid infinite loop when reading specially crafted TAR files using the tarfile module
(CVE-2019-20907).
(cherry picked from commit 5a8d121a1f3ef5ad7c105ee378cc79a3eac0c7d4)

Co-authored-by: Rishi &lt;rishi_devan@mail.com&gt;</pre>
</div>
</content>
</entry>
</feed>
