[Git][security-tracker-team/security-tracker][master] Track fixed version for python-django via unstable
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Wed Aug 5 05:00:54 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
458340b0 by Salvatore Bonaccorso at 2026-08-05T06:00:29+02:00
Track fixed version for python-django via unstable
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -298,19 +298,19 @@ CVE-2017-20242 (Keysight IxChariot Endpoint before 9.5.102 contains a stack-base
CVE-2017-20241 (Keysight IxChariot Endpoint before 9.5.102 contains a heap-based buffe ...)
NOT-FOR-US: Keysight IxChariot Endpoint
CVE-2026-15920 (An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0 ...)
- - python-django <unfixed> (bug #1143611)
+ - python-django 3:5.2.17-1 (bug #1143611)
NOTE: https://www.djangoproject.com/weblog/2026/aug/04/security-releases/
NOTE: Fixed by: https://github.com/django/django/commit/b9adb81339cc418f8f56b1050cca6dfec3ab6349 (5.2.17)
CVE-2026-15830 (An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0 ...)
- - python-django <unfixed> (bug #1143611)
+ - python-django 3:5.2.17-1 (bug #1143611)
NOTE: https://www.djangoproject.com/weblog/2026/aug/04/security-releases/
NOTE: Fixed by: https://github.com/django/django/commit/ba80833fa656dd09660b97c4429331067db1b080 (5.2.17)
CVE-2026-15337 (An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0 ...)
- - python-django <unfixed> (bug #1143611)
+ - python-django 3:5.2.17-1 (bug #1143611)
NOTE: https://www.djangoproject.com/weblog/2026/aug/04/security-releases/
NOTE: Fixed by: https://github.com/django/django/commit/c72a5dbb64d0777f3f471f1be94e8b2ca91e0959 (5.2.17)
CVE-2026-15307 (An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0 ...)
- - python-django <unfixed> (bug #1143611)
+ - python-django 3:5.2.17-1 (bug #1143611)
NOTE: https://www.djangoproject.com/weblog/2026/aug/04/security-releases/
NOTE: Fixed by: https://github.com/django/django/commit/115ffd0463a765ab1cc93de18e94b5459b8a300e (5.2.17)
CVE-2026-XXXX [RUSTSEC-2026-0204]
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/458340b020c70907d387992b8cd109e1df3064b6
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/458340b020c70907d387992b8cd109e1df3064b6
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260805/be389980/attachment.htm>
More information about the debian-security-tracker-commits
mailing list