python-django16 1.6.6-1ubuntu5 source package in Ubuntu

Changelog

python-django16 (1.6.6-1ubuntu5) vivid; urgency=medium

  [ Marc Deslauriers ]
  * SECURITY UPDATE: denial-of-service possibility with strip_tags
    - debian/patches/CVE-2015-2316.patch: fix infinite loop possibility
      in django/utils/html.py, added test to
      tests/utils_tests/test_html.py.
    - CVE-2015-2316
  * SECURITY UPDATE: XSS attack via user-supplied redirect URLs
    - debian/patches/CVE-2015-2317.patch: reject URLs that start with
      control characters in django/utils/http.py, added test to
      tests/utils_tests/test_http.py.
    - CVE-2015-2317
 -- Andres Rodriguez <email address hidden>   Mon, 23 Mar 2015 16:49:34 -0400

Upload details

Uploaded by:
Andres Rodriguez
Uploaded to:
Vivid
Original maintainer:
Ubuntu Developers
Architectures:
all
Section:
python
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Vivid: [FULLYBUILT] amd64

Downloads

File Size SHA-256 Checksum
python-django16_1.6.6.orig.tar.gz 6.3 MiB 536cbd54e533ba3563d205f0c91988b24e7d74b8b253d7825e42214b50ba7e90
python-django16_1.6.6-1ubuntu5.debian.tar.gz 30.3 KiB ffd7442ce9c7c6f98bd9efbf05d2ba7e08d38355c00061a0f257e6d9ea2b821c
python-django16_1.6.6-1ubuntu5.dsc 2.3 KiB 8128ef132f4c31b61893a39ce494489382401ff1adc6b57fc8435816dd963d64

Available diffs

View changes file

Binary packages built by this source

python-django16: No summary available for python-django16 in ubuntu wily.

No description available for python-django16 in ubuntu wily.