Oval Definition:oval:org.opensuse.security:def:20169014
Revision Date:2022-05-20Version:1
Title:CVE-2016-9014
Description:

Django before 1.8.x before 1.8.16, 1.9.x before 1.9.11, and 1.10.x before 1.10.3, when settings.DEBUG is True, allow remote attackers to conduct DNS rebinding attacks by leveraging failure to validate the HTTP Host header against settings.ALLOWED_HOSTS.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-9014
Mitre CVE-2016-9014
SUSE CVE-2016-9014
openSUSE-SU-2018:0824-1
openSUSE-SU-2018:0824-1
openSUSE-SU-2018:0826-1
openSUSE-SU-2018:0826-1
SUSE-SU-2018:0973-1
SUSE-SU-2018:0973-1
SUSE-SU-2018:1102-1
SUSE-SU-2018:1102-1
Platform(s):openSUSE Leap 42.3
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
Product(s):
Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND python-Django-1.8.19-3.4.1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND python-Django-1.8.19-3.6 is installed
  • Definition Synopsis
  • openSUSE Leap 42.3 is installed
  • AND Package Information
  • python-Django-1.8.19-6.4 is installed
  • AND python-Django is signed with openSUSE key
  • OR
  • python3-Django-1.8.19-5.3 is installed
  • AND python3-Django is signed with openSUSE key
  • BACK