-
Committer:
Package Import Robot
-
Author(s):
Marc Deslauriers
-
Date:
2014-03-31 10:20:43 UTC
-
Revision ID:
package-import@ubuntu.com-20140331102043-4i4sty9ls6l2xb7a
Tags: 1.1.7+2.0.0-1ubuntu1.1
* SECURITY UPDATE: insecure use of temporary files
- debian/patches/CVE-2014-193x.patch: use tempfile.mkstemp() in
PIL/EpsImagePlugin.py, PIL/Image.py, PIL/IptcImagePlugin.py,
PIL/JpegImagePlugin.py.
- CVE-2014-1932
- CVE-2014-1933