Re: [OE-core] [kirkstone][PATCH 1/2] python3-urllib3: update to v1.26.18

2023-12-13 Thread Lee Chee Yang
ping > -Original Message- > From: openembedded-core@lists.openembedded.org c...@lists.openembedded.org> On Behalf Of Lee Chee Yang > Sent: Thursday, November 30, 2023 8:28 PM > To: openembedded-core@lists.openembedded.org > Subject: [OE-core] [kirkstone][PATCH 1/

[OE-core] [kirkstone][PATCH 1/2] python3-urllib3: update to v1.26.18

2023-11-30 Thread Lee Chee Yang
From: Tan Wen Yan https://github.com/urllib3/urllib3/releases/tag/1.26.18 Major changes in python3-urllib3 1.26.18: - Made body stripped from HTTP requests changing the request method to GET after HTTP 303 "See Other" redirect responses. (CVE-2023-45803) ( cherry picked from commit