Merge lp://qastaging/~noskcaj/ubuntu/trusty/pillow/2.3.1 into lp://qastaging/ubuntu/trusty/pillow

Proposed by Jackson Doak
Status: Needs review
Proposed branch: lp://qastaging/~noskcaj/ubuntu/trusty/pillow/2.3.1
Merge into: lp://qastaging/ubuntu/trusty/pillow
Diff against target: 264 lines (+57/-19)
15 files modified
.pc/no-lib64-hack.diff/setup.py (+1/-1)
.pc/toplevel-setup.py/setup.py (+1/-1)
.travis.yml (+1/-1)
CHANGES.rst (+5/-0)
PIL/EpsImagePlugin.py (+2/-1)
PIL/Image.py (+6/-3)
PIL/IptcImagePlugin.py (+2/-2)
PIL/JpegImagePlugin.py (+8/-4)
PIL/__init__.py (+1/-1)
PKG-INFO (+6/-1)
Pillow.egg-info/PKG-INFO (+6/-1)
_imaging.c (+1/-1)
debian/changelog (+15/-0)
debian/control (+1/-1)
setup.py (+1/-1)
To merge this branch: bzr merge lp://qastaging/~noskcaj/ubuntu/trusty/pillow/2.3.1
Reviewer Review Type Date Requested Status
Sebastien Bacher Needs Information
Review via email: mp+212247@code.qastaging.launchpad.net

Description of the change

New upstream bugfix release (CVE fix, nothing else)

To post a comment you must log in.
Revision history for this message
Sebastien Bacher (seb128) wrote :

Thanks, could you give an url to download the upstream tarball? The source has no watch file nor upstream url in the control

review: Needs Information
Revision history for this message
Jackson Doak (noskcaj) wrote :

https://pypi.python.org/pypi/Pillow/2.3.1

On Mon, Mar 31, 2014 at 10:22 PM, Sebastien Bacher <email address hidden>wrote:

> Review: Needs Information
>
> Thanks, could you give an url to download the upstream tarball? The source
> has no watch file nor upstream url in the control
> --
>
> https://code.launchpad.net/~noskcaj/ubuntu/trusty/pillow/2.3.1/+merge/212247
> You are the owner of lp:~noskcaj/ubuntu/trusty/pillow/2.3.1.
>

Unmerged revisions

13. By Jackson Doak

* New upstream release.
  - Fix insecure use of tempfile.mktemp (CVE-2014-1932 CVE-2014-1933)

12. By Jackson Doak

* Merge with Debian; remaining changes:
  - Provide transitional packages.
* Build for python 3.4.

Preview Diff

[H/L] Next/Prev Comment, [J/K] Next/Prev File, [N/P] Next/Prev Hunk
The diff is not available at this time. You can reload the page or download it.

Subscribers

People subscribed via source and target branches

to all changes: