[Git][security-tracker-team/security-tracker][master] django DSA

Moritz Muehlenhoff jmm at debian.org
Fri Jul 5 18:55:53 BST 2019



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
615f17f3 by Moritz Muehlenhoff at 2019-07-05T17:55:18Z
django DSA
flightcrew unimportant

- - - - -


3 changed files:

- data/CVE/list
- data/DSA/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -698,10 +698,11 @@ CVE-2019-13045 (Irssi before 1.0.8, 1.1.x before 1.1.3, and 1.2.x before 1.2.1,
 CVE-2019-13033
 	RESERVED
 CVE-2019-13032 (An issue was discovered in FlightCrew v0.9.2 and earlier. A NULL point ...)
-	- flightcrew <unfixed> (bug #931246)
+	- flightcrew <unfixed> (unimportant; bug #931246)
 	NOTE: https://github.com/Sigil-Ebook/flightcrew/issues/53
 	NOTE: https://github.com/Sigil-Ebook/flightcrew/commit/c75c100218ed5c0e7652947051e28b54a75212ae
 	NOTE: https://github.com/Sigil-Ebook/flightcrew/commit/b4f4a70f604ddcb4e8e343aa0e690764fc46d780
+	NOTE: Negligible security impact
 CVE-2019-13030
 	RESERVED
 CVE-2019-13029


=====================================
data/DSA/list
=====================================
@@ -1,3 +1,6 @@
+[05 Jul 2019] DSA-4476-1 python-django - security update
+	{CVE-2019-6975 CVE-2019-12308 CVE-2019-12781}
+	[stretch] - python-django 1:1.10.7-2+deb9u5
 [01 Jul 2019] DSA-4475-1 openssl - security update
 	{CVE-2019-1543}
 	[stretch] - openssl 1.1.0k-1~deb9u1


=====================================
data/dsa-needed.txt
=====================================
@@ -49,9 +49,6 @@ nss
 --
 poppler (jmm)
 --
-python-django
-  Maintainer prepared updates
---
 python2.7 (jmm)
 --
 python3.5 (jmm)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/615f17f35a3ccb1e6a6b363a6ce15f2524684e5d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/615f17f35a3ccb1e6a6b363a6ce15f2524684e5d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190705/e58a2116/attachment.html>


More information about the debian-security-tracker-commits mailing list