twisted is an event-driven networking engine written in Python. In affected versions twisted exposes cookies and authorization headers when following cross-origin redirects. This issue is present in the twited.web.RedirectAgent
and twisted.web. BrowserLikeRedirectAgent
functions. Users are advised to upgrade. There are no known workarounds.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python-twisted" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python-twisted-bin" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python-twisted-bin-dbg" }, { "binary_version": "1:17.9.0-2ubuntu0.3", "binary_name": "python-twisted-conch" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python-twisted-core" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python-twisted-mail" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python-twisted-names" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python-twisted-news" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python-twisted-runner" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python-twisted-runner-dbg" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python-twisted-web" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python-twisted-words" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python3-twisted" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python3-twisted-bin" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "python3-twisted-bin-dbg" }, { "binary_version": "17.9.0-2ubuntu0.3", "binary_name": "twisted-doc" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "18.9.0-11ubuntu0.20.04.2", "binary_name": "python3-twisted" }, { "binary_version": "18.9.0-11ubuntu0.20.04.2", "binary_name": "python3-twisted-bin" }, { "binary_version": "18.9.0-11ubuntu0.20.04.2", "binary_name": "python3-twisted-bin-dbg" }, { "binary_version": "18.9.0-11ubuntu0.20.04.2", "binary_name": "twisted-doc" } ] }