-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 10 Jun 2025 09:37:03 -0700 Source: python-django Architecture: source Version: 3:4.2.23-1 Distribution: unstable Urgency: high Maintainer: Debian Python Team <team+python@tracker.debian.org> Changed-By: Chris Lamb <lamby@debian.org> Changes: python-django (3:4.2.23-1) unstable; urgency=high . * New upstream bugfix release. Quoting upstream: . Following the June 4, 2025 security release [uploaded to Debian as 3:4.2.22-1], the Django team is issuing releases [to] complete mitigation for CVE-2025-48432 […]. . These follow-up releases migrate remaining response logging paths to a safer logging implementation, ensuring that all untrusted input is properly escaped before being written to logs. This update does not introduce a new CVE but strengthens the original fix. . <https://www.djangoproject.com/weblog/2025/jun/10/bugfix-releases/> Checksums-Sha1: 2621969be872e0ef12e20f575b3598e0be4aa7ab 2790 python-django_4.2.23-1.dsc 7a4a57c5120a34a04fce64fa2163b20608df1258 10448384 python-django_4.2.23.orig.tar.gz 127821ee20a0c26d27a9b8a19becbc27bf2e29bd 34008 python-django_4.2.23-1.debian.tar.xz eeba28b5f79f905d90cd14e7112d9ff79d8fd5e3 9401 python-django_4.2.23-1_source.buildinfo Checksums-Sha256: c3ad537fb794403cf4dfaceb597d254d41c77352cc48f2fd60bd23a9bce4eb99 2790 python-django_4.2.23-1.dsc 42fdeaba6e6449d88d4f66de47871015097dc6f1b87910db00a91946295cfae4 10448384 python-django_4.2.23.orig.tar.gz c271d5acea114c87db0062f967b4f2393dc45239b86a55af77f9e523031a8102 34008 python-django_4.2.23-1.debian.tar.xz 66ad2f7ffb10bc2ba3669ee6bca05d5d3adc83a8ca05e3c40d3ae3a9404a0414 9401 python-django_4.2.23-1_source.buildinfo Files: f467f0a27c6d87d0d6d69dd87747b91f 2790 python optional python-django_4.2.23-1.dsc a9b0a17dcadcb8a718059d9fedf617d9 10448384 python optional python-django_4.2.23.orig.tar.gz 5b471298ec693905177bd4341c81cd2b 34008 python optional python-django_4.2.23-1.debian.tar.xz cf8e0139adbf9edfad296f772a7df07c 9401 python optional python-django_4.2.23-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEwv5L0nHBObhsUz5GHpU+J9QxHlgFAmhIYq8ACgkQHpU+J9Qx HlgzhBAAjgf6zes64vxiN1l5CvwV1yVJ5DdYHbTgywe0b6FhHgO5p6dlFu2b6blS PM3AO9NcsdD66zpLn33J40U6Tzz4FwxpEqQOhSeH8K/3JMUz1M99sBZgCuJRE/E3 oFBY5BFJOIqnhd8SeLMf/j5D59qyeAQcMLxNa/R6jQauGJMEN9Jn9PltVRRck2cb JZAwt3iP/fD/cLimL7YwQb96UR1+lJBwTKJJ8KKEG9osP3FirWss56lOc8jI9/Bf WLlAhcKQUjLNZuRe94407/HEW693lbGMQN1579PJr/o4BBTPS6KEv26YXA28o6IT Qdvm819Y9Jj+dXU9R9HU7MZ+7KN0PA8E+t/Z+vldcBFtwtwdsCwns2rzU/iERMqP ot140kXSBgGIA8eDpJRblfv3awcA8MohCww2LmWjIbtmLgwt9xT9qvm4s5o08BBl NbtDn8QEKcBRgDCWl9gYU6A448f0HGbt5fnThjoIWoGGlK/8jIsQDcB/Reo8t+Yt MKIVLaCr9L5/KzZlMawt4JOa6GOTIFaOOQBK8UvtUqaLVrLEZcebpYp0FUorntCT jyQ6y8EjEIkgJ1yUHJzfgOjW5EgEyG1eOg4tY80vL9+8+TrkLrjyj1D7/bhMMCgU tcfZZSSOws+hY/vhK5iJIZqc8BVZgRBsuZCKda1eiC8uT9nlqwE= =iZAl -----END PGP SIGNATURE-----