[Python-Dev] Need help on security vulnerability zlib 1.2.11

2022-04-19 Thread Prasad, PCRaghavendra
Hi All, We are facing some issue with the zlib package 1.2.11. Recently there was a vulnerability in zlib and we had to upgrade to 1.2.12 on all supported platforms We did that in all platforms including windows, python39.dll is now showing 1.2.12 but the problem is we use pyinstaller to

[Python-Dev] Python 3.9.11

2022-03-16 Thread Prasad, PCRaghavendra
Hi Team, Can someone please let us know the release date of Python 3.9.11 ( with libexpat 2.4.8 security issues fixed ) In the python.org releases it was mentioned as 14-march-2022, but still, I couldn't see the bin/source code. Can someone help with this Thanks, Raghavendra Internal Use -

[Python-Dev] Re: Need Help

2022-02-25 Thread Prasad, PCRaghavendra
or issues. Thanks, Raghu Internal Use - Confidential From: Barry Scott Sent: Saturday, February 26, 2022 3:08 AM To: Prasad, PCRaghavendra Cc: Python-Dev@python.org Subject: Re: [Python-Dev] Need Help [EXTERNAL EMAIL] On 25 Feb 2022, at 12:58, Prasad, PCRaghavendra mailto:pcraghavendra.pra..

[Python-Dev] Need Help

2022-02-25 Thread Prasad, PCRaghavendra
Hi All, we are using the python 3.9.5 version in our application. In 3.9.5 it is using libexpat 2.2.8 version, as part of the Black duck scan, it is showing critical vulnerabilities in libexpat 2.2.8. (CVE-2022-22824 CVE-2022-23990 CVE-2022-23852 CVE-2022-25236 CVE-2022-22823) when there are