Ubuntu Security Notice USN-3089-1

Ubuntu Security Notice 3089-1 – Sergey Bobrov discovered that Django incorrectly parsed cookies when being used with Google Analytics. A remote attacker could possibly use this issue to set arbitrary cookies leading to a CSRF protection bypass.

Leave a Reply