python-django 1.8.7-1ubuntu8.1 source package in Ubuntu

Changelog

python-django (1.8.7-1ubuntu8.1) yakkety-security; urgency=medium

  * SECURITY UPDATE: user with hardcoded password created when running
    tests on Oracle
    - debian/patches/CVE-2016-9013.patch: remove hardcoded password in
      django/db/backends/oracle/creation.py, added note to
      docs/ref/settings.txt.
    - CVE-2016-9013
  * SECURITY UPDATE: DNS rebinding vulnerability when DEBUG=True
    - debian/patches/CVE-2016-9014.patch: properly check ALLOWED_HOSTS in
      django/http/request.py, updated docs/ref/settings.txt, added test to
      tests/requests/tests.py.
    - CVE-2016-9014

 -- Marc Deslauriers <email address hidden>  Mon, 31 Oct 2016 09:22:27 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Yakkety
Original maintainer:
Ubuntu Developers
Architectures:
all
Section:
python
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Yakkety: [FULLYBUILT] amd64

Downloads

File Size SHA-256 Checksum
python-django_1.8.7.orig.tar.gz 6.9 MiB 17a66de5cf59b5ee81c3dc57609b145bb45adddc0dc06937b998597d6e7b4523
python-django_1.8.7-1ubuntu8.1.debian.tar.xz 36.1 KiB 53624ad88410fcf532ddf077ec8e5d419b93774fa4839034775eddec34c3a3c7
python-django_1.8.7-1ubuntu8.1.dsc 2.7 KiB 5025ce8902208aa8e32bd8ba82d99a5de44494942863577daba9ef68acae2444

View changes file

Binary packages built by this source

python-django: No summary available for python-django in ubuntu yakkety.

No description available for python-django in ubuntu yakkety.

python-django-common: No summary available for python-django-common in ubuntu yakkety.

No description available for python-django-common in ubuntu yakkety.

python-django-doc: No summary available for python-django-doc in ubuntu yakkety.

No description available for python-django-doc in ubuntu yakkety.

python3-django: No summary available for python3-django in ubuntu yakkety.

No description available for python3-django in ubuntu yakkety.