python-django 1.5.4-1ubuntu1.3 source package in Ubuntu
Changelog
python-django (1.5.4-1ubuntu1.3) saucy-security; urgency=medium * SECURITY UPDATE: cache coherency problems in old Internet Explorer compatibility functions lead to loss of privacy and cache poisoning attacks. (LP: #1317663) - debian/patches/drop_fix_ie_for_vary_1_5.diff: remove fix_IE_for_vary() and fix_IE_for_attach() functions so Cache-Control and Vary headers are no longer modified. This may introduce some regressions for IE 6 and IE 7 users. Patch from upstream. - CVE-2014-1418 * SECURITY UPDATE: The validation for redirects did not correctly validate some malformed URLs, which are accepted by some browsers. This allows a user to be redirected to an unsafe URL unexpectedly. - debian/patches/is_safe_url_1_5.diff: Forbid URLs starting with '///', forbid URLs without a host but with a path. Patch from upstream. -- Seth Arnold <email address hidden> Wed, 14 May 2014 11:00:30 -0700
Upload details
- Uploaded by:
- Seth Arnold
- Uploaded to:
- Saucy
- Original maintainer:
- Ubuntu Developers
- Architectures:
- all
- Section:
- python
- Urgency:
- Medium Urgency
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
python-django_1.5.4.orig.tar.gz | 7.7 MiB | 428defe3fd515dfc8613039bb0a80622a13fb4b988c5be48db07ec098ea1704e |
python-django_1.5.4-1ubuntu1.3.debian.tar.gz | 30.4 KiB | b1c937618abb8a4e71e54c3b0e51f93c795f6dec705cf50f708845df0d0ca419 |
python-django_1.5.4-1ubuntu1.3.dsc | 1.9 KiB | ac8e8461bbcc8d66f5d54fef8d8ba06e7c986538e0f9c81284ba56a031755978 |
Available diffs
Binary packages built by this source
- python-django: No summary available for python-django in ubuntu saucy.
No description available for python-django in ubuntu saucy.
- python-django-doc: No summary available for python-django-doc in ubuntu saucy.
No description available for python-django-doc in ubuntu saucy.