MGASA-2014-0366
Dashboard / Vulnerabilities / MGASA-2014-0366
MGASA-2014-0366
Summary: Updated python-django packages fix multiple vulnerabilities
Details: Updated python-django and python-django14 packages fix security vulnerabilities: These releases address an issue with reverse() generating external URLs (CVE-2014-0480); a denial of service involving file uploads (CVE-2014-0481); a potential session hijacking issue in the remote-user middleware (CVE-2014-0482); and a data leak in the administrative interface (CVE-2014-0483).
References: https://advisories.mageia.org/MGASA-2014-0366.html, https://bugs.mageia.org/show_bug.cgi?id=13963, https://www.djangoproject.com/weblog/2014/aug/20/security/
Affected packages
Package
Name: python-django
Purl: pkg:rpm/mageia/python-django?arch=source&distro=mageia-3
Affected ranges
Type: ECOSYSTEM
Events:
