From aaaf6ea78d2700f619575ca1c1de143c810f2edf Mon Sep 17 00:00:00 2001 From: Utkarsh Gupta Date: Sat, 8 Aug 2020 22:59:56 +0530 Subject: Mark CVE-2020-10378/pillow as not-affected for jessie --- data/CVE/2020.list | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/data/CVE/2020.list b/data/CVE/2020.list index 0223338713..8cc6bcf33b 100644 --- a/data/CVE/2020.list +++ b/data/CVE/2020.list @@ -16601,7 +16601,7 @@ CVE-2020-10378 (In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-boun - pillow 7.2.0-1 [buster] - pillow 5.4.1-2+deb10u2 [stretch] - pillow (Vulnerable code not present) - [jessie] - pillow (Minor issue) + [jessie] - pillow (Vulnerable code not present) NOTE: https://github.com/python-pillow/Pillow/pull/4538 NOTE: https://github.com/python-pillow/Pillow/pull/4506 NOTE: https://github.com/python-pillow/Pillow/commit/124f4bb591e16212605d0e41c413ed53e242cba2 (Test) -- cgit v1.2.3