[Bug 636482] Re: Update python-django to 1.2.3 version to fix an XSS vulnerability

Kai Kasurinen kai.kasurinen at uninea.fi
Wed Sep 15 03:54:32 BST 2010


** Bug watch added: Debian Bug tracker #596205
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=596205

** Also affects: python-django (Debian) via
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=596205
   Importance: Unknown
       Status: Unknown

-- 
Update python-django to 1.2.3 version to fix an XSS vulnerability
https://bugs.launchpad.net/bugs/636482
You received this bug notification because you are a member of Ubuntu
Sponsors Team, which is a direct subscriber.

Status in “python-django” package in Ubuntu: New
Status in “python-django” package in Debian: Unknown

Bug description:
A new vulnerability has been discovered in 1.2 branch and two new django
releases were made: 1.2.2 which fixes an xss vulnerability [1] and the
1.2.3 that fixes two regressions caused by previous release [2]. All
users are advised to update so I'm preparing an update and asking for
FFe.

[1] http://www.djangoproject.com/weblog/2010/sep/08/security-release/
[2] http://www.djangoproject.com/weblog/2010/sep/10/123/

 affects ubuntu/python-django
 severity high
 subscribe ubuntu-release






More information about the Ubuntu-sponsors mailing list