[Git][security-tracker-team/security-tracker][master] Reserve DLA-2893-1 for pillow

Emilio Pozuelo Monfort (@pochu) pochu at debian.org
Sun Jan 23 18:38:19 GMT 2022



Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker


Commits:
feb59e64 by Emilio Pozuelo Monfort at 2022-01-23T19:38:05+01:00
Reserve DLA-2893-1 for pillow

- - - - -


2 changed files:

- data/DLA/list
- data/dla-needed.txt


Changes:

=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[23 Jan 2022] DLA-2893-1 pillow - security update
+	{CVE-2022-22815 CVE-2022-22816 CVE-2022-22817}
+	[stretch] - pillow 4.0.0-4+deb9u4
 [21 Jan 2022] DLA-2892-1 golang-1.7 - security update
 	{CVE-2021-33196 CVE-2021-36221 CVE-2021-39293 CVE-2021-41771 CVE-2021-44716 CVE-2021-44717}
 	[stretch] - golang-1.7 1.7.4-2+deb9u4


=====================================
data/dla-needed.txt
=====================================
@@ -92,8 +92,6 @@ openjdk-8 (Emilio)
 pgbouncer (Christoph Berg)
   NOTE: 20220104: maintainer might want to upload fixed version
 --
-pillow (Emilio)
---
 pjproject
   NOTE: 20211230: patch available for the no-dsa issue, check its NOTE (pochu)
 --



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/feb59e64d6aee6415d69f3f5b775c92d050d6f94

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/feb59e64d6aee6415d69f3f5b775c92d050d6f94
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220123/201e746a/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list