VDB
Sign up
—

PYSEC-2019-156

Quick fix

PYSEC-2019-156 — scipy: upgrade to the fixed version with the command below.

pip install --upgrade 'scipy>=bd296e0336420b840fcd2faabb97084fd252a973'

Details

The scipy.weave component in SciPy before 0.12.1 creates insecure temporary directories.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/scipy
Introduced in: 0Fixed in: bd296e0336420b840fcd2faabb97084fd252a973
Fixpip install --upgrade 'scipy>=bd296e0336420b840fcd2faabb97084fd252a973'

References