[Python-modules-team] Bug#934026: python-django: CVE-2019-14232 CVE-2019-14233 CVE-2019-14234 CVE-2019-14235

Moritz Muehlenhoff jmm at inutil.org
Thu Aug 8 15:19:41 BST 2019


On Thu, Aug 08, 2019 at 02:16:29PM +0100, Chris Lamb wrote:
> Hi Moritz,
> 
> > > > > Security team (added to CC), would you be interested in uploads for
> > > > > buster (currently 1:1.11.22-1~deb10u1) and stretch (currently
> > > > > 1:1.10.7-2+deb9u5)?
> […]
> > I just realised that there's a 1.11.23 (thanks Salvatore!), given that
> > we agreed to follow 1.11.x in buster, shouldn't we rather use that one?
> 
> D'oh, that makes more sense. Okay, I can prepare a debdiff for that --
> however, can you just confirm the version we should use?
> 1:1.11.23-1~deb10u1?

Looks good!

Cheers,
        Moritz



More information about the Python-modules-team mailing list