From cd4825bf4ac4fafc0941b0a489977dc5b5a35ba4 Mon Sep 17 00:00:00 2001 From: Anton Gladky Date: Sat, 12 Feb 2022 12:29:15 +0100 Subject: LTS: ignore CVE-2020-8492 for stretch --- data/CVE/list.2020 | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'data') diff --git a/data/CVE/list.2020 b/data/CVE/list.2020 index a5b6296bcf..0151ae1174 100644 --- a/data/CVE/list.2020 +++ b/data/CVE/list.2020 @@ -53384,7 +53384,7 @@ CVE-2020-8492 (Python 2.7 through 2.7.17, 3.5 through 3.5.9, 3.6 through 3.6.10, [jessie] - python3.4 (Minor issue) - python2.7 2.7.18-2 (low; bug #970099) [buster] - python2.7 (Minor issue) - [stretch] - python2.7 (Minor issue) + [stretch] - python2.7 (Too destructive to backport. Though the patch is partly ready. https://salsa.debian.org/lts-team/packages/python2.7/-/blob/master/debian/patches/CVE-2020-8492.patch) [jessie] - python2.7 (Minor issue) NOTE: https://bugs.python.org/issue39503 NOTE: https://github.com/python/cpython/pull/18284 -- cgit v1.2.3