python-django 1.1.1-2ubuntu1.5 source package in Ubuntu

Changelog

python-django (1.1.1-2ubuntu1.5) lucid-security; urgency=low

  * SECURITY UPDATE: Cross-site scripting in authentication views
    (LP: #1031733)
    - debian/patches/16_fix_cross_site_scripting_in_authentication.diff:
      fix unsafe redirects indjango/http/__init__.py. Patch backported from
      Debian Squeeze and fixed for python 2.4 compatibility.
    - CVE-2012-3442
  * SECURITY UPDATE: Denial-of-service in image validation (LP: #1031733)
    - debian/patches/17_fix_dos_in_image_validation.diff: call verify()
      immediately after the constructor in django/forms/fields.py.
    - CVE-2012-3443
  * SECURITY UPDATE: Denial-of-service via get_image_dimensions()
    (LP: #1031733)
    - debian/patches/18_fix_dos_via_get_image_dimensions.diff: don't limit
      chunk size in django/core/files/images.py.
    - CVE-2012-3444
 -- Marc Deslauriers <email address hidden>   Thu, 06 Sep 2012 09:56:37 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Lucid
Original maintainer:
Ubuntu Developers
Architectures:
all
Section:
python
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Lucid: [FULLYBUILT] i386

Downloads

File Size SHA-256 Checksum
python-django_1.1.1.orig.tar.gz 5.4 MiB d65b18319496fc4923b37fdb736e5ba1a90a3a18e2d7eaac7f3ad30738d1f6e4
python-django_1.1.1-2ubuntu1.5.diff.gz 50.8 KiB 29aef9ee8b287a374df66949c85858b4893906d1a594c751f922c6f0c1334031
python-django_1.1.1-2ubuntu1.5.dsc 2.2 KiB 3e4688e58258282415c3860e1dfc84f418c9a2a9945b3c6eb9bfd30c23483321

View changes file

Binary packages built by this source

python-django: No summary available for python-django in ubuntu lucid.

No description available for python-django in ubuntu lucid.

python-django-doc: No summary available for python-django-doc in ubuntu lucid.

No description available for python-django-doc in ubuntu lucid.