python-django 1.8.7-1ubuntu11 source package in Ubuntu

Changelog

python-django (1.8.7-1ubuntu11) zesty; urgency=medium

  * SECURITY UPDATE: Open redirect and possible XSS attack via
    user-supplied numeric redirect URLs
    - debian/patches/CVE-2017-7233.patch: fix is_safe_url() with numeric
      URLs in django/utils/http.py, added tests to
      tests/utils_tests/test_http.py.
    - CVE-2017-7233
  * SECURITY UPDATE: Open redirect vulnerability in
    django.views.static.serve()
    - debian/patches/CVE-2017-7234.patch: remove redirect from
      django/views/static.py.
    - CVE-2017-7234

 -- Marc Deslauriers <email address hidden>  Mon, 03 Apr 2017 10:32:55 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Zesty
Original maintainer:
Ubuntu Developers
Architectures:
all
Section:
python
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Zesty: [FULLYBUILT] amd64

Downloads

File Size SHA-256 Checksum
python-django_1.8.7.orig.tar.gz 6.9 MiB 17a66de5cf59b5ee81c3dc57609b145bb45adddc0dc06937b998597d6e7b4523
python-django_1.8.7-1ubuntu11.debian.tar.xz 38.7 KiB 699c23a4a433f56ab9bb2d3df299d8d38b20e09d7bd868f3946ff260b2038715
python-django_1.8.7-1ubuntu11.dsc 2.7 KiB 4c5d49b08b231e8e73c9c03f3c0249982136a40f7014176c9ae8ec7050008284

View changes file

Binary packages built by this source

python-django: No summary available for python-django in ubuntu artful.

No description available for python-django in ubuntu artful.

python-django-common: No summary available for python-django-common in ubuntu artful.

No description available for python-django-common in ubuntu artful.

python-django-doc: No summary available for python-django-doc in ubuntu artful.

No description available for python-django-doc in ubuntu artful.

python3-django: No summary available for python3-django in ubuntu artful.

No description available for python3-django in ubuntu artful.