Fedora EPEL 7 Security Update: python-django-1.6.10-1.el7

Resolved Bugs
1179672 – CVE-2015-0219 Django: WSGI header spoofing via underscore/dash conflation
1181941 – CVE-2015-0219 python-django: Django: WSGI header spoofing via underscore/dash conflation [epel-7]
1179675 – CVE-2015-0220 Django: Mitigated possible XSS attack via user-supplied redirect URLs
1181945 – CVE-2015-0220 python-django: Django: Mitigated possible XSS attack via user-supplied redirect URLs [epel-7]
1179679 – CVE-2015-0221 Django: denial of service attack against django.views.static.serve
1181948 – CVE-2015-0221 python-django: Django: denial of service attack against django.views.static.serve [epel-7]
1181952 – CVE-2015-0222 python-django: Django: database denial of service with ModelMultipleChoiceField [epel-7]
1179685 – CVE-2015-0222 Django: database denial of service with ModelMultipleChoiceField<br
fix CVE-2015-0219 (rhbz#1181939)
update to 1.6.9

Leave a Reply