[Git][security-tracker-team/security-tracker][master] CVE-2019-16865,pillow: Mark as no-dsa for Jessie

Markus Koschany apo at debian.org
Sat Oct 19 22:59:44 BST 2019



Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker


Commits:
728a31ed by Markus Koschany at 2019-10-19T21:58:47Z
CVE-2019-16865,pillow: Mark as no-dsa for Jessie

Jessie is affected but I believe the risk of introducing regressions is too
high in this case.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4222,6 +4222,7 @@ CVE-2019-16865 (An issue was discovered in Pillow before 6.2.0. When reading spe
 	- pillow 6.2.0-1 (low)
 	[buster] - pillow <no-dsa> (Minor issue)
 	[stretch] - pillow <no-dsa> (Minor issue)
+	[jessie] - pillow <no-dsa> (Risk of regressions is too high)
 	- python-imaging <removed>
 	NOTE: https://github.com/python-pillow/Pillow/pull/4101
 	NOTE: https://github.com/python-pillow/Pillow/pull/4102



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/728a31ed03fe8d9af7c0a0101057ec77e3385e60

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/728a31ed03fe8d9af7c0a0101057ec77e3385e60
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191019/3eacc252/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list