[Python-modules-team] Bug#932960: python-django doesn't fix a CVE and drops Python 2 support at the same time

Chris Lamb lamby at debian.org
Thu Jul 25 17:51:23 BST 2019


tags 932960 + moreinfo
thanks

Hi Paul,

> PS: I failed to spot bugs against (some of) those packages communication
> the removal, I think that would be nice for those maintainers.

This might have been justifiably and fairly missed as it was dicussed
quite some time, possibly years, ago. Not your fault, possibly ours…
However, as Brian mentions we do really have no option but to use the
2.x branch of Django these days and, unfortunately, this means that
Python 2.x support is accordingly dropped.

The packages you list may thus need to be updated or removed. (I'm
afraid I haven't looked into the specifics...)

> Your package is trying to fix a CVE

Can you elaborate? I'm a little distracted by DebConf stuff but I
can't seem to grok what you mean here specifically.


Regards,

-- 
      ,''`.
     : :'  :     Chris Lamb
     `. `'`      lamby at debian.org 🍥 chris-lamb.co.uk
       `-



More information about the Python-modules-team mailing list