Oval Definition:oval:org.mitre.oval:def:13269
Revision Date:2014-06-30Version:21
Title:USN-1004-1 -- python-django vulnerability
Description:It was discovered that Django did not properly sanitize the cookie value when applying CSRF protections resulting in a cross-site scripting vulnerability. With cross-site scripting vulnerabilities, if a user were tricked into viewing server output during a crafted server request, a remote attacker could exploit this to modify the contents, or steal confidential data, within the same domain.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2010-3082
USN-1004-1
USN-1004-1
Platform(s):Ubuntu 10.10
Product(s):python-django
Definition Synopsis
  • Ubuntu 10.10 is installed
  • AND Installed architecture is all
  • AND Packages section
  • python-django-doc DPKG is earlier than 1.2.3-1ubuntu0.1
  • OR python-django DPKG is earlier than 1.2.3-1ubuntu0.1
  • BACK