Package Info

python-defusedxml


XML bomb protection for Python stdlib modules


Development/Languages/Python

The results of an attack on a vulnerable XML library can be fairly dramatic. With just a few hundred bytes of XML data an attacker can occupy several gigabytes of memory within seconds. An attacker can also keep CPUs busy for a long time with a small to medium size request.

This library allows for XML to be parsed in a manner that avoids these pitfalls.


License: Python-2.0
URL: https://pypi.python.org/pypi/defusedxml

Categories

Releases

Package Version Update ID Released Package Hub Version Platforms Subpackages
0.6.0-bp152.1.11 info GA Release 2020-04-17 15 SP2
  • AArch64
  • ppc64le
  • s390x
  • x86-64
  • python2-defusedxml
0.5.0-bp151.3.1 info GA Release 2019-07-16 15 SP1
  • AArch64
  • ppc64le
  • s390x
  • x86-64
  • python2-defusedxml
  • python3-defusedxml
0.5.0-bp151.2.11 info GA Release 2019-05-18 15 SP1
  • AArch64
  • ppc64le
  • s390x
  • x86-64
  • python2-defusedxml
  • python3-defusedxml
0.5.0-bp150.2.4 info GA Release 2018-07-30 15
  • AArch64
  • ppc64le
  • s390x
  • x86-64
  • python2-defusedxml
  • python3-defusedxml