Revision Date: | 2016-02-08 | Version: | 2 |
Title: | DSA-3404-1 python-django -- security update |
Description: | Ryan Butterfield discovered a vulnerability in the date template filter in python-django, a high-level Python web development framework. A remote attacker can take advantage of this flaw to obtain any secret in the application's settings. |
Family: | unix | Class: | patch |
Status: | ACCEPTED | Reference(s): | CVE-2015-8213 DSA-3404-1
|
Platform(s): | Debian 8 Debian GNU/kFreeBSD 7.0 Debian GNU/Linux 7.0
| Product(s): | python-django
|
Definition Synopsis |
Debian 7 Debian 7 is installed
AND GNU/Linux or GNU/kFreeBSD kernel
Debian GNU/Linux is installed
OR Debian GNU/kFreeBSD is installed
AND python-django is earlier than 0:1.4.5-1+deb7u14
OR Debian 8
Debian 8 is installed
AND python-django is earlier than 0:1.7.7-1+deb8u3
|