From 0951ef64aec0da0e6f45c0b6295e6ce2605b7777 Mon Sep 17 00:00:00 2001 From: Utkarsh Gupta Date: Sat, 8 Aug 2020 21:24:33 +0530 Subject: Mark CVE-2020-11538/pillow as not-affected for stretch --- data/CVE/list.2020 | 1 + 1 file changed, 1 insertion(+) diff --git a/data/CVE/list.2020 b/data/CVE/list.2020 index 7dcbcaf5b9..6bb10cad6e 100644 --- a/data/CVE/list.2020 +++ b/data/CVE/list.2020 @@ -13531,6 +13531,7 @@ CVE-2020-11539 (An issue was discovered on Tata Sonata Smart SF Rush 1.12 device CVE-2020-11538 (In libImaging/SgiRleDecode.c in Pillow through 7.0.0, a number of out- ...) - pillow 7.2.0-1 (low) [buster] - pillow 5.4.1-2+deb10u2 + [stretch] - pillow (Vulnerable code not present) NOTE: https://github.com/python-pillow/Pillow/pull/4504 NOTE: https://github.com/python-pillow/Pillow/pull/4538 CVE-2020-11537 (A SQL Injection issue was discovered in ONLYOFFICE Document Server 5.5 ...) -- cgit v1.2.3