type: security subject: Updated python packages fix security vulnerabilities CVE: - CVE-2019-16056 - CVE-2019-16935 src: 7: core: - python-2.7.17-1.1.mga7 - python3-3.7.5-1.mga7 description: | Updated python and python3 packages fix security vulnerabilities: It was discovered that Python incorrectly parsed certain email addresses. A remote attacker could possibly use this issue to trick Python applications into accepting email addresses that should be denied (CVE-2019-16056). It was discovered that the Python documentation XML-RPC server incorrectly handled certain fields. A remote attacker could use this issue to execute a cross-site scripting (XSS) attack (CVE-2019-16935). references: - https://bugs.mageia.org/show_bug.cgi?id=25641 - https://usn.ubuntu.com/4151-1/ ID: MGASA-2019-0318