From 2b8dfaac7c28d0a15b840807e603b316e88ebed9 Mon Sep 17 00:00:00 2001 From: Alex Clark Date: Wed, 13 Mar 2024 15:11:23 -0400 Subject: [PATCH] Retro-add release notes for 2.3.1 for #7864 --- docs/releasenotes/2.3.1.rst | 12 ++++++++++++ 1 file changed, 12 insertions(+) create mode 100644 docs/releasenotes/2.3.1.rst diff --git a/docs/releasenotes/2.3.1.rst b/docs/releasenotes/2.3.1.rst new file mode 100644 index 00000000000..ab5a05d5d92 --- /dev/null +++ b/docs/releasenotes/2.3.1.rst @@ -0,0 +1,12 @@ +2.3.1 +----- + +Security +======== + +Fix CVE-2014-1932, CVE-2014-1933 +^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^ + +.. note:: More information about these vulnerabilities included in database records :cve:`CVE-2014-1932`, :cve:`CVE-2014-1933` + +Fix insecure use of tempfile.mktemp as reported in `Debian bug #737059 `_.