twisted is an event-driven networking engine written in Python. In affected versions twisted exposes cookies and authorization headers when following cross-origin redirects. This issue is present in the twited.web.RedirectAgent
and twisted.web. BrowserLikeRedirectAgent
functions. Users are advised to upgrade. There are no known workarounds.
{ "availability": "No subscription required", "binaries": [ { "binary_name": "python-twisted", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "python-twisted-bin", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "python-twisted-bin-dbg", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "python-twisted-conch", "binary_version": "1:17.9.0-2ubuntu0.3" }, { "binary_name": "python-twisted-core", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "python-twisted-mail", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "python-twisted-names", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "python-twisted-news", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "python-twisted-runner", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "python-twisted-runner-dbg", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "python-twisted-web", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "python-twisted-words", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "python3-twisted", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "python3-twisted-bin", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "python3-twisted-bin-dbg", "binary_version": "17.9.0-2ubuntu0.3" }, { "binary_name": "twisted-doc", "binary_version": "17.9.0-2ubuntu0.3" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "python3-twisted", "binary_version": "18.9.0-11ubuntu0.20.04.2" }, { "binary_name": "python3-twisted-bin", "binary_version": "18.9.0-11ubuntu0.20.04.2" }, { "binary_name": "python3-twisted-bin-dbg", "binary_version": "18.9.0-11ubuntu0.20.04.2" }, { "binary_name": "twisted-doc", "binary_version": "18.9.0-11ubuntu0.20.04.2" } ] }