Re: DLA 1842-1: use of wrong CVE?

[Adding debian-lts@lists.debian.org to CC]

Hi Martin,

> from the vulnerability description in DLA 1842-1 I assume that the
> CVE-ID mentioned is not correct. Should be the new CVE-2019-12781 from
> > https://www.djangoproject.com/weblog/2019/jul/01/security-releases/
> instead of CVE-2019-12308.

Well spotted. This is "merely" cosmetic however; we are recording this
correctly internally in our database.


I've opened a pull request to update the website here:


