[Bug 234631] [NEW] security vulnerability in django admin

Launchpad Bug Tracker 234631 at bugs.launchpad.net
Wed Jun 4 11:25:11 BST 2008


*** This bug is a security vulnerability ***

You have been subscribed to a public security bug by Andrea Gasparini (gaspa):

Binary package hint: python-django

The Django project has released a one-line fix for a possible cross-site
scripting attack against the admin interface:

See: http://groups.google.com/group/django-
announce/browse_thread/thread/903d7c2af239ec42

** Affects: python-django (Ubuntu)
     Importance: Medium
     Assignee: Andrea Gasparini (gaspa)
         Status: Triaged

** Affects: python-django (Ubuntu Feisty)
     Importance: Undecided
     Assignee: Andrea Gasparini (gaspa)
         Status: Triaged

** Affects: python-django (Ubuntu Gutsy)
     Importance: Undecided
     Assignee: Andrea Gasparini (gaspa)
         Status: In Progress

** Affects: python-django (Ubuntu Hardy)
     Importance: Undecided
     Assignee: Andrea Gasparini (gaspa)
         Status: In Progress

** Affects: python-django (Ubuntu Intrepid)
     Importance: Medium
     Assignee: Andrea Gasparini (gaspa)
         Status: Triaged

-- 
security vulnerability in django admin
https://bugs.edge.launchpad.net/bugs/234631
You received this bug notification because you are a member of Ubuntu Sponsors for universe, which is a direct subscriber.



More information about the Ubuntu-universe-sponsors mailing list