[Python-modules-commits] [python-django] 03/03: New upstream security release
Raphaël Hertzog
hertzog at moszumanska.debian.org
Wed Jul 8 23:39:46 UTC 2015
This is an automated email from the git hooks/post-receive script.
hertzog pushed a commit to branch debian/sid
in repository python-django.
commit 4065914fa0c0417b7befd91c9b00e5ae06d7ec2b
Author: Raphaël Hertzog <hertzog at debian.org>
Date: Thu Jul 9 01:37:47 2015 +0200
New upstream security release
https://www.djangoproject.com/weblog/2015/jul/08/security-releases/
It fixes:
- CVE-2015-5143: possible denial-of-service by filling session store
- CVE-2015-5144: possible header injection since validators accept
newlines in input
---
debian/changelog | 11 +++++++++++
1 file changed, 11 insertions(+)
diff --git a/debian/changelog b/debian/changelog
index 39822bc..e670414 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,3 +1,14 @@
+python-django (1.7.9-1) unstable; urgency=medium
+
+ * New upstream security release:
+ https://www.djangoproject.com/weblog/2015/jul/08/security-releases/
+ It fixes:
+ - CVE-2015-5143: possible denial-of-service by filling session store
+ - CVE-2015-5144: possible header injection since validators accept
+ newlines in input
+
+ -- Raphaël Hertzog <hertzog at debian.org> Thu, 09 Jul 2015 01:33:31 +0200
+
python-django (1.7.7-1) unstable; urgency=high
* New upstream security and bugfix release:
--
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/python-modules/packages/python-django.git
More information about the Python-modules-commits
mailing list