-
Thu Aug 04 2016 Charalampos Stratakis <cstratak@redhat.com> - 2.7.8-16
- Fix for CVE-2016-1000110 HTTPoxy attack
Resolves: rhbz#1359167
-
Tue Jun 21 2016 Tomas Orsava <torsava@redhat.com> - 2.7.8-15
- Fix for CVE-2016-0772 python: smtplib StartTLS stripping attack (rhbz#1303647)
Raise an error when STARTTLS fails (upstream patch)
- Fix for CVE-2016-5699 python: http protocol steam injection attack (rhbz#1303699)
Disabled HTTP header injections in httplib (upstream patch)
Resolves: rhbz#1346358
-
Thu Apr 28 2016 Charalampos Stratakis <cstratak@redhat.com> - 2.7.8-14
- Fix iteration over files with very long lines
Resolves: rhbz#1329141
-
Tue Apr 19 2016 Charalampos Stratakis <cstratak@redhat.com> - 2.7.8-13
- Modified 00214-pep466-backport-py3-ssl-changes.patch to apply correctly
Resolves: rhbz#1111464
-
Tue Apr 19 2016 Charalampos Stratakis <cstratak@redhat.com> - 2.7.8-12
- Modified 00224-pep476-add-toggle-for-cert-verify.patch to use certificate verification
config file from python27 SCL directory.
Resolves: rhbz#1111464
-
Tue Apr 12 2016 Charalampos Stratakis <cstratak@redhat.com> - 2.7.8-11
- Add choices for sort option of cProfile for better output
Resolves: rhbz#1319655
-
Tue Apr 12 2016 Charalampos Stratakis <cstratak@redhat.com> - 2.7.8-10
- Modified patch so tests can acknowledge the existense or lack
of SSLv2 support
Resolves: rhbz#1319703
-
Wed Apr 06 2016 Charalampos Stratakis <cstratak@redhat.com> - 2.7.8-9
- Adjusted tests to acknowledge lack of SSLv2 support
Resolves: rhbz#1319703
-
Wed Apr 06 2016 Charalampos Stratakis <cstratak@redhat.com> - 2.7.8-8
- Change HTTPS certificate verification to platform_default
Resolves: rhbz#1319774
-
Wed Mar 09 2016 Michal Cyprian <mcyprian@redhat.com> - 2.7.8-7
- Initialize OpenSSL_add_all_digests in _hashlib
Resolves: rhbz#1318319