[Secure-testing-commits] r35417 - in data: . CVE

Guido Guenther agx at moszumanska.debian.org
Fri Jul 10 14:06:08 UTC 2015


Author: agx
Date: 2015-07-10 14:06:07 +0000 (Fri, 10 Jul 2015)
New Revision: 35417

Modified:
   data/CVE/list
   data/dla-needed.txt
Log:
python-django/squeeze affected by CVE-2015-5143 CVE-2015-5144

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-07-10 13:28:23 UTC (rev 35416)
+++ data/CVE/list	2015-07-10 14:06:07 UTC (rev 35417)
@@ -713,6 +713,7 @@
 	{DSA-3305-1}
 	- python-django 1.7.9-1
 	NOTE: https://www.djangoproject.com/weblog/2015/jul/08/security-releases/
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-5144 has split out patches
 CVE-2015-5143 [denial-of-service possibility by filling session store]
 	RESERVED
 	{DSA-3305-1}

Modified: data/dla-needed.txt
===================================================================
--- data/dla-needed.txt	2015-07-10 13:28:23 UTC (rev 35416)
+++ data/dla-needed.txt	2015-07-10 14:06:07 UTC (rev 35417)
@@ -50,6 +50,8 @@
 phpmyadmin (Thijs Kinkhorst)
   http://lists.debian.org/8d1ec56509c135da275476758673e47a.squirrel@aphrodite.kinkhorst.nl
 --
+python-django
+--
 pound (Guido Günther)
 --
 roundup (Thorsten Alteholz)




More information about the Secure-testing-commits mailing list