[SECURITY] Fedora 7 Update: Django-0.96.1-1.fc7

updates at fedoraproject.org updates at fedoraproject.org
Fri Nov 9 23:58:29 UTC 2007


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2007-3157
2007-11-09 23:58:24.783630
--------------------------------------------------------------------------------

Name        : Django
Product     : Fedora 7
Version     : 0.96.1
Release     : 1.fc7
URL         : http://www.djangoproject.com/
Summary     : A high-level Python Web framework
Description :
Django is a high-level Python Web framework that encourages rapid
development and a clean, pragmatic design. It focuses on automating as
much as possible and adhering to the DRY (Don't Repeat Yourself)
principle.

--------------------------------------------------------------------------------
ChangeLog:

* Thu Nov  1 2007 Michel Salim <michel.sylvan at gmail.com> 0.96.1-1
- i18n security update: CVE-2007-5712, bz#357051
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #362761 - CVE-2007-5712 Django 0.96 i18n DoS [F7]
        https://bugzilla.redhat.com/show_bug.cgi?id=362761
  [ 2 ] Bug #357051 - CVE-2007-5712 Django 0.96 i18n DoS
        https://bugzilla.redhat.com/show_bug.cgi?id=357051
  [ 3 ] CVE-2007-5712
        http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5712
--------------------------------------------------------------------------------
Updated packages:

a090ebbd8432e75cf23a94c92d1186aeb166b55c Django-0.96.1-1.fc7.noarch.rpm
bfbc24a43c8b344186646071b27a682a8d557130 Django-docs-0.96.1-1.fc7.noarch.rpm
fbd27a25f2bc2fbbda7de34151374ee8c0b064aa Django-0.96.1-1.fc7.src.rpm

This update can be installed with the "yum" update program.  Use 
su -c 'yum update Django' 
at the command line.  For more information, refer to "Managing Software
with yum", available at http://docs.fedoraproject.org/yum/.
--------------------------------------------------------------------------------




More information about the package-announce mailing list