[Python-modules-team] python-django_1.6.5-1~bpo70+1_amd64.changes ACCEPTED into wheezy-backports
Debian FTP Masters
ftpmaster at ftp-master.debian.org
Tue May 27 09:49:41 UTC 2014
Accepted:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Tue, 27 May 2014 09:29:26 +0200
Source: python-django
Binary: python-django python-django-doc
Architecture: source all
Version: 1.6.5-1~bpo70+1
Distribution: wheezy-backports
Urgency: high
Maintainer: Debian Python Modules Team <python-modules-team at lists.alioth.debian.org>
Changed-By: Raphaël Hertzog <hertzog at debian.org>
Description:
python-django - High-level Python web development framework
python-django-doc - High-level Python web development framework (documentation)
Closes: 557474 636511 686333 704203 722605 723043 724637 729194
Changes:
python-django (1.6.5-1~bpo70+1) wheezy-backports; urgency=medium
.
* Rebuild for wheezy-backports.
.
python-django (1.6.5-1) unstable; urgency=high
.
* New upstream security release.
- Caches may be allowed to store and serve private data (CVE-2014-1418)
- Malformed URLs from user input incorrectly validated
* Drop partial_functions_reverse.patch (merged upstream).
.
python-django (1.6.3-2) unstable; urgency=high
.
* Fix regression of reverse() and partial views. (LP: #1311433)
Thanks Preston Timmons.
.
python-django (1.6.3-1) unstable; urgency=high
.
* New upstream security release.
- Unexpected code execution using ``reverse()``
- CVE-2014-0472
- Caching of anonymous pages could reveal CSRF token
- CVE-2014-0473
- MySQL typecasting could result in unexpected matches
- CVE-2014-0474
* Drop patches 07_translation_encoding_fix and ticket21869.diff; merged
upstream
.
python-django (1.6.1-2) unstable; urgency=medium
.
* Team upload.
* d/patches/ticket21869.diff: Cherry pick upstream fix for building
documentation against Sphinx 1.2.1.
.
python-django (1.6.1-1) unstable; urgency=medium
.
* New upstream version.
* Fix broken encoding in translations attribution. (Closes: #729194)
.
python-django (1.6-1) unstable; urgency=low
.
* New upstream version. Closes: #557474, #724637.
* python-django now also suggests the installation of ipython,
bpython, python-django-doc, and libgdal1.
Closes: #636511, #686333, #704203
* Set package maintainer to Debian Python Modules Team.
* Bump standards version to 3.9.5, no changes needed.
.
python-django (1.5.4-1) unstable; urgency=high
.
* New upstream security release. Fixes CVE-2013-1443. Closes: #723043.
https://www.djangoproject.com/weblog/2013/sep/15/security/
- Denial-of-service via large passwords. CVE-2013-1443
.
python-django (1.5.3-1) unstable; urgency=high
.
* New upstream security release. Fixes CVE-2013-4315. Closes: #722605
https://www.djangoproject.com/weblog/2013/sep/10/security-releases-issued/
- Directory traversal with ssi template tag
* Update doc-base file to drop some removed directory in the HTML doc.
* Update Standards-Version to 3.9.4.
* Bump debhelper compat level to 9.
Checksums-Sha1:
8284c3d31253695af9a025e58e884ffd1a922564 1951 python-django_1.6.5-1~bpo70+1.dsc
bf7e750f10c1440458ff6f4ab5d9c32ee72da519 20975 python-django_1.6.5-1~bpo70+1.debian.tar.gz
ec6b648bf002b8cdbc2a28ca620acd094c41fe99 3981568 python-django_1.6.5-1~bpo70+1_all.deb
fc804e84d0971cacc9ed4658c69b2251f8f07746 2607454 python-django-doc_1.6.5-1~bpo70+1_all.deb
Checksums-Sha256:
4ad1687e39cf2294d68046abd4467b48d752a8e5a7b6e7dde0adfc4f6957b76a 1951 python-django_1.6.5-1~bpo70+1.dsc
ab421cfa095ba5ab2820176b8f67755dbf2554a685a08feacc1c980fb17ee87c 20975 python-django_1.6.5-1~bpo70+1.debian.tar.gz
15f92c4d3ab12f8ce7c4f82a8a2c80422da1a7dd9feb9d19f5e6e072bf2f689d 3981568 python-django_1.6.5-1~bpo70+1_all.deb
594a2c91f3798ab2e80cfe488019c92dfe31a7116bb093de3f2e39ec44a1212f 2607454 python-django-doc_1.6.5-1~bpo70+1_all.deb
Files:
c3d333f2426b135e93f62a349e0827b6 1951 python optional python-django_1.6.5-1~bpo70+1.dsc
fff3a388e54cc0b2b496c1e20636cdd8 20975 python optional python-django_1.6.5-1~bpo70+1.debian.tar.gz
6e7a7cf34824060e7bb75e9180455825 3981568 python optional python-django_1.6.5-1~bpo70+1_all.deb
125a7b94d0c3f70c54fbce720fb05a6b 2607454 doc optional python-django-doc_1.6.5-1~bpo70+1_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.22 (GNU/Linux)
Comment: Signed by Raphael Hertzog
iQEcBAEBCAAGBQJThErXAAoJEAOIHavrwpq5UOwH/2CEVY8hn5M9rhYerLIdg4rR
J39YyvaKM6nlmcNkWR80xp0AJiA5HRPhjYYlgHEVc93ujEw/VXaOyE2OHdzLjdpq
0P4Qigc581yKEoLuz0/3jLpqnMe5qRs49WqCeY4JSApbHO80k6Pm6q4Q8fov3tO4
nSQhMmR0NUyrtpIabbo4747Mt8rxI0pkGBj5o7KaMW1cNOQw9QNnA6YMVuGMoW1m
IazfjTLklGmvqMCvmigp9Oo/UtIxQgeEsUC2HtzEYKH6rrXkiFF6PY20+RbbGvH0
moDvhcNdZTJx0jzoyaegUwvZ+ZyrFuzY6wd608fUqYAt8InMxSUSzk0dXft9MRg=
=3SFW
-----END PGP SIGNATURE-----
Thank you for your contribution to Debian.
More information about the Python-modules-team
mailing list