python3.12-PyMySQL/CVE-2024-36039.patch
Charalampos Stratakis e7c5daa602 Security fix for CVE-2024-36039
Resolves: RHEL-38366
2024-05-31 18:17:29 +02:00

18 lines
501 B
Diff

diff --git a/pymysql/converters.py b/pymysql/converters.py
index 1adac75..dbf97ca 100644
--- a/pymysql/converters.py
+++ b/pymysql/converters.py
@@ -27,11 +27,7 @@ def escape_item(val, charset, mapping=None):
def escape_dict(val, charset, mapping=None):
- n = {}
- for k, v in val.items():
- quoted = escape_item(v, charset, mapping)
- n[k] = quoted
- return n
+ raise TypeError("dict can not be used as parameter")
def escape_sequence(val, charset, mapping=None):