Debian 9909 Published by

A python-reportlab security update has been released for Debian GNU/Linux 8 LTS.



Package : python-reportlab
Version : 3.1.8-3+deb8u2
CVE ID : CVE-2019-17626
Debian Bug : 942763

It was found that ReportLab, a Python library to create PDF documents,
did not properly parse color strings, allowing an attacker to execute
arbitrary code through a crafted input document.

For Debian 8 "Jessie", this problem has been fixed in version
3.1.8-3+deb8u2.

We recommend that you upgrade your python-reportlab packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS