[Python-modules-commits] [python-django] 03/03: Changelog for new version

Luke Faraone lfaraone at moszumanska.debian.org
Fri Jan 16 05:44:52 UTC 2015


This is an automated email from the git hooks/post-receive script.

lfaraone pushed a commit to branch debian/experimental
in repository python-django.

commit 7d67ca2bed7593f29634ffdd1f5724527f2ca8df
Author: Luke Faraone <lfaraone at debian.org>
Date:   Thu Jan 15 21:44:39 2015 -0800

    Changelog for new version
---
 debian/changelog | 10 ++++++++++
 1 file changed, 10 insertions(+)

diff --git a/debian/changelog b/debian/changelog
index 937889b..cb21a26 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,3 +1,13 @@
+python-django (1.7.3-1) UNRELEASED; urgency=high
+
+  * New upstream security release.
+    - WSGI header spoofing via underscore/dash conflation (CVE-2015-0219)
+    - Possible XSS attack via user-supplied redirect URLs (CVE-2015-0220)
+    - DoS attack against django.views.static.serve (CVE-2015-0221)
+    - Database DoS with ModelMultipleChoiceField (CVE-2015-0222)
+
+ -- Luke Faraone <lfaraone at debian.org>  Thu, 15 Jan 2015 21:42:11 -0800
+
 python-django (1.7.2-1) experimental; urgency=medium
 
   [ Raphaël Hertzog ]

-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/python-modules/packages/python-django.git



More information about the Python-modules-commits mailing list