[Python-modules-commits] [python-django] 03/03: Changelog for new version
Luke Faraone
lfaraone at moszumanska.debian.org
Fri Jan 16 05:44:52 UTC 2015
This is an automated email from the git hooks/post-receive script.
lfaraone pushed a commit to branch debian/experimental
in repository python-django.
commit 7d67ca2bed7593f29634ffdd1f5724527f2ca8df
Author: Luke Faraone <lfaraone at debian.org>
Date: Thu Jan 15 21:44:39 2015 -0800
Changelog for new version
---
debian/changelog | 10 ++++++++++
1 file changed, 10 insertions(+)
diff --git a/debian/changelog b/debian/changelog
index 937889b..cb21a26 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,3 +1,13 @@
+python-django (1.7.3-1) UNRELEASED; urgency=high
+
+ * New upstream security release.
+ - WSGI header spoofing via underscore/dash conflation (CVE-2015-0219)
+ - Possible XSS attack via user-supplied redirect URLs (CVE-2015-0220)
+ - DoS attack against django.views.static.serve (CVE-2015-0221)
+ - Database DoS with ModelMultipleChoiceField (CVE-2015-0222)
+
+ -- Luke Faraone <lfaraone at debian.org> Thu, 15 Jan 2015 21:42:11 -0800
+
python-django (1.7.2-1) experimental; urgency=medium
[ Raphaël Hertzog ]
--
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/python-modules/packages/python-django.git
More information about the Python-modules-commits
mailing list