—
PYSEC-2012-8
Quick fix
PYSEC-2012-8 — keyring: upgrade to the fixed version with the command below.
pip install --upgrade 'keyring>=0.9.2'Details
Python Keyring 0.9.1 does not securely initialize the cipher when encrypting passwords for CryptedFileKeyring files, which makes it easier for local users to obtain passwords via a brute-force attack.
Are you affected?
Enter the version of the package you're using.