Ubuntu has released an advisory on November 5: https://ubuntu.com/security/notices/USN-7093-1
Fix: https://github.com/pallets/werkzeug/commit/8760275afb72bd10b57d92cb4d52abf759b2f3a7
Whiteboard: (none) => MGA9TOOCVE: (none) => CVE-2024-49767Status comment: (none) => Fixed upstream in 3.0.6 and patch available from upstreamSource RPM: (none) => python-werkzeug-3.0.3-1.mga10.src.rpm
Everything necessary pinpointed! Assigning to Python stack aintainers.
Assignee: bugsquad => python
Assigning to QA, Packages in 9/Core/Updates_testing: ====================== python3-werkzeug-3.0.6-1.mga9.noarch.rpm From SRPMS python-werkzeug-3.0.6-1.mga9.src.rpm
Assignee: python => qa-bugsCC: (none) => geiger.david68210Version: Cauldron => 9Whiteboard: MGA9TOO => (none)
Keywords: (none) => advisory
RH x86_54 installing python3-werkzeug-3.0.6-1.mga9.noarch.rpm from //home/katnatek/qa-testing/x86_64 Preparing... ################################################################################################## 1/1: python3-werkzeug ################################################################################################## 1/1: removing python3-werkzeug-3.0.3-1.mga9.noarch ################################################################################################## OK in base clean install CC to papoteur for additional test
CC: (none) => yvesbrungard
Building a podman image for MADb including the update. Launching the image Browsing the application. No regression found. OK for me.
(In reply to papoteur from comment #5) > Building a podman image for MADb including the update. > Launching the image > Browsing the application. > No regression found. > OK for me. Thank you
CC: (none) => andrewsfarmWhiteboard: (none) => MGA9-64-OK
Validating.
Keywords: (none) => validated_updateCC: (none) => sysadmin-bugs
An update for this issue has been pushed to the Mageia Updates repository. https://advisories.mageia.org/MGASA-2024-0351.html
Status: NEW => RESOLVEDResolution: (none) => FIXED