[Git][security-tracker-team/security-tracker][master] 2 commits: LTS/triage CVE-2020-8492/python3.4,python2.7
Roberto C. Sánchez
roberto at debian.org
Fri Feb 14 20:45:21 GMT 2020
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker
Commits:
e6224443 by Roberto C. Sánchez at 2020-02-14T15:44:12-05:00
LTS/triage CVE-2020-8492/python3.4,python2.7
- - - - -
a7cbdd8d by Roberto C. Sánchez at 2020-02-14T15:45:05-05:00
LTS/remove python3.4,python2.7 from dla-needed.txt, no open vulnerabilities
- - - - -
2 changed files:
- data/CVE/list
- data/dla-needed.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -1100,9 +1100,11 @@ CVE-2020-8492 (Python 2.7 through 2.7.17, 3.5 through 3.5.9, 3.6 through 3.6.10,
- python3.5 <removed>
[stretch] - python3.5 <no-dsa> (Minor issue)
- python3.4 <removed>
+ [jessie] - python3.4 <no-dsa> (Minor issue)
- python2.7 <unfixed>
[buster] - python2.7 <no-dsa> (Minor issue)
[stretch] - python2.7 <no-dsa> (Minor issue)
+ [jessie] - python2.7 <no-dsa> (Minor issue)
NOTE: https://bugs.python.org/issue39503
NOTE: https://github.com/python/cpython/pull/18284
NOTE: https://python-security.readthedocs.io/vuln/urllib-basic-auth-regex.html
=====================================
data/dla-needed.txt
=====================================
@@ -65,10 +65,6 @@ python-pysaml2 (Abhijith PA)
python-reportlab (Hugo Lefeuvre)
NOTE: 20200127: upstream fix was published, but potentially unsuitable. currently investigating.
--
-python2.7 (Roberto C. Sánchez)
---
-python3.4 (Roberto C. Sánchez)
---
qemu (Utkarsh Gupta)
NOTE: 20200210: WIP.
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/71c38d1dc2b41d2511907e466cf508f40ced84d1...a7cbdd8d400d7b4d34a3401e6abc42f36ac79e29
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/71c38d1dc2b41d2511907e466cf508f40ced84d1...a7cbdd8d400d7b4d34a3401e6abc42f36ac79e29
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200214/5a62c02a/attachment-0001.html>
More information about the debian-security-tracker-commits
mailing list