[Python-modules-commits] [python-django] 05/06: New upstream release

Raphaël Hertzog hertzog at moszumanska.debian.org
Sat May 20 14:02:53 UTC 2017


This is an automated email from the git hooks/post-receive script.

hertzog pushed a commit to branch debian/jessie-backports
in repository python-django.

commit aaccda715265ac8365cf0bc0a54693ad7af5ee4d
Author: Raphaël Hertzog <hertzog at debian.org>
Date:   Sat May 20 15:35:57 2017 +0200

    New upstream release
---
 debian/changelog | 9 +++++++++
 1 file changed, 9 insertions(+)

diff --git a/debian/changelog b/debian/changelog
index 458d3f3..3404ec6 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,3 +1,12 @@
+python-django (1.8.18-1~bpo8+1) jessie-backports; urgency=medium
+
+  * New upstream security release. Fixes:
+    - CVE-2017-7233: Open redirect and possible XSS attack via user-supplied
+      numeric redirect URLs
+    - CVE-2017-7234: Open redirect vulnerability in django.views.static.serve()
+
+ -- Raphaël Hertzog <hertzog at debian.org>  Sat, 20 May 2017 15:34:31 +0200
+
 python-django (1.8.16-1~bpo8+1) jessie-backports; urgency=medium
 
   * New upstream security release. Fixes:

-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/python-modules/packages/python-django.git



More information about the Python-modules-commits mailing list