This update for python-tornado6 fixes the following issues:
reason argument used in HTTP headers and in HTML default error pages can be used by
attackers to launch header injection or XSS attacks (bsc#1254903).HTTPHeaders.add method can lead
o DoS when processing a maliciously crafted HTTP request (bsc#1254905)._parseparam function of httputil.py can lead to DoS
when processing maliciously crafted parameters in a Content-Disposition header (bsc#1254904).6.5-160000.3.16.5-160000.3.1