[Secure-testing-commits] r23312 - in data: . CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Wed Aug 14 05:37:28 UTC 2013


Author: jmm
Date: 2013-08-14 05:37:28 +0000 (Wed, 14 Aug 2013)
New Revision: 23312

Modified:
   data/CVE/list
   data/dsa-needed.txt
Log:
new django issues


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-08-13 21:32:45 UTC (rev 23311)
+++ data/CVE/list	2013-08-14 05:37:28 UTC (rev 23312)
@@ -1,3 +1,7 @@
+CVE-2013-XXXX [django Cross-site scripting (XSS) in admin interface]
+	- python-django 1.5.2-1
+CVE-2013-XXXX [django ossible XSS via is_safe_url]
+	- python-django 1.5.2-1
 CVE-2013-5110
 	RESERVED
 CVE-2013-5109

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2013-08-13 21:32:45 UTC (rev 23311)
+++ data/dsa-needed.txt	2013-08-14 05:37:28 UTC (rev 23312)
@@ -62,6 +62,8 @@
 pidgin/oldstable
   The version in squeeze is likely too outdated anyway, so end-of-life might be the better option
 --
+python-django
+--
 quagga
 --
 qt4-x11/oldstable




More information about the Secure-testing-commits mailing list