[issue32056] Improve exceptions in aifc, sunau and wave

2018-03-01 Thread zhangdeyue
zhangdeyue <abcdyzh...@163.com> added the comment: I'm confused now. For any program which receive external file, to check the input file is necessary to do, isn't it? And program error lead to security bug, that's not right? The program itself check input file, catch and sho

[issue32056] Improve exceptions in aifc, sunau and wave

2018-03-01 Thread zhangdeyue
zhangdeyue <abcdyzh...@163.com> added the comment: I agree that it is very small, but I still think it is indeed a security issue, because it can crash real world program when called by some library used in Deep Learning ASR project. Does a CVE assigned have any negative impact

[issue32056] Improve exceptions in Lib/wave.py

2018-03-01 Thread zhangdeyue
zhangdeyue <abcdyzh...@163.com> added the comment: ok, I found this bug when I use librosa-0.5.1 to read audio file in the audio-classification project -- an ASR project. (https://github.com/nextco/audio-classification) In the project, librosa.load function read audio file, and it

[issue32056] bug in Lib/wave.py

2018-02-28 Thread zhangdeyue
zhangdeyue <abcdyzh...@163.com> added the comment: The CVE email: The CVE ID is below. Please check whether the vulnerability still exists in Python 3.6.4, and please inform the software maintainer that the CVE ID has been assigned: https://bugs.python.org Use CVE-2017

[issue32056] bug in Lib/wave.py

2017-11-17 Thread zhangdeyue
Change by zhangdeyue <abcdyzh...@163.com>: -- keywords: +patch pull_requests: +4382 stage: -> patch review ___ Python tracker <rep...@bugs.python.org> <https://bugs.pyt