|
|
|
@@ -55,17 +55,3 @@ The VMT consists of vulnerability management experts in the community. The team |
|
|
|
## MindSpore Security Advisory (SA) |
|
|
|
|
|
|
|
None |
|
|
|
|
|
|
|
## MindSpore Security Note (SN) |
|
|
|
|
|
|
|
+ Some vulnerabilities of third-party open-source components need to be fixed by users. |
|
|
|
+ Python 3.7.5 has the following vulnerabilities: |
|
|
|
+ [CVE-2019-18348](https://nvd.nist.gov/vuln/detail/CVE-2019-18348) |
|
|
|
+ [CVE-2020-8315](https://nvd.nist.gov/vuln/detail/CVE-2020-8315) |
|
|
|
+ [CVE-2020-8492](https://nvd.nist.gov/vuln/detail/CVE-2020-8492) |
|
|
|
+ Pillow 6.2.0 has the following vulnerabilities: |
|
|
|
+ [CVE-2019-19911](https://nvd.nist.gov/vuln/detail/CVE-2019-19911) |
|
|
|
+ [CVE-2020-5310](https://nvd.nist.gov/vuln/detail/CVE-2020-5310) |
|
|
|
+ [CVE-2020-5311](https://nvd.nist.gov/vuln/detail/CVE-2020-5311) |
|
|
|
+ [CVE-2020-5312](https://nvd.nist.gov/vuln/detail/CVE-2020-5312) |
|
|
|
+ [CVE-2020-5313](https://nvd.nist.gov/vuln/detail/CVE-2020-5313) |