Bug#929321: unblock: sqlalchemy/1.2.18+ds1-2 (CVE-2019-7164 CVE-2019-7548)

2019-05-30 Thread Mike Bayer
On 5/30/19 5:23 AM, Paul Gevers wrote: Hi Mike, zigo, Thanks for your replies, I very much think it's safer to just allow SQLAchemy to migrate right now, to fix the potential SQL insertion vulnerability, rather than waiting for any (potential, but likely rare) issue in the above reverse depe

Bug#929321: unblock: sqlalchemy/1.2.18+ds1-2 (CVE-2019-7164 CVE-2019-7548)

2019-05-29 Thread Mike Bayer
to Piotr to do the work. I'm > happily replying though. :) > > I'm CC-ing Piotr and Mike Bayer (upstream for SQLAlchemy). > > On 5/28/19 8:59 PM, Paul Gevers wrote: > > Control: tags -1 moreinfo confirmed > > > > Hi Zigo, > > > > On Tue, 21 May