-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 14 May 2014 23:13:58 +0200 Source: python-django Binary: python-django python-django-doc Architecture: source all Version: 1.4.5-1+deb7u7 Distribution: stable-security Urgency: high Maintainer: Chris Lamb <lamby@debian.org> Changed-By: Raphaël Hertzog <hertzog@debian.org> Description: python-django - High-level Python web development framework python-django-doc - High-level Python web development framework (documentation) Closes: 722483 Changes: python-django (1.4.5-1+deb7u7) stable-security; urgency=high . * New upstream security release. https://www.djangoproject.com/weblog/2014/may/14/security-releases-issued/ - Caches may be allowed to store and serve private data (CVE-2014-1418) - Malformed URLs from user input incorrectly validated (CVE-2014-3730) * Add FTBFS-exception-in-servers-tests-tear-down.patch. Closes: #722483 Fixes unbalanced setUp/tearDown calls in LiveServerAddress test. Checksums-Sha1: b2a3dfcc9922c1c0914ec510b08f62f72e24905d 1945 python-django_1.4.5-1+deb7u7.dsc 7f997540464e672ac22c8235616a03b8d01549e9 37903 python-django_1.4.5-1+deb7u7.debian.tar.gz b13f1f94d5227d421e2de5eda87fcea9d29a3271 5366586 python-django_1.4.5-1+deb7u7_all.deb 9ceb8ce1d3c41e0175fd31b7fb31d092f5b6a52a 2433488 python-django-doc_1.4.5-1+deb7u7_all.deb Checksums-Sha256: 07a19a4173ff014cd900d2dfd744741f47aee959fe27356d44d5dc06e0aadcc8 1945 python-django_1.4.5-1+deb7u7.dsc 3834af642feec40572de10117d7457e920a0c8bd1e3c6c69580b9ba924c3050a 37903 python-django_1.4.5-1+deb7u7.debian.tar.gz 0907e10aeb4e6ee200b6af7743a613305ed91b2f8ca69cbd1a8959b3648ac194 5366586 python-django_1.4.5-1+deb7u7_all.deb fd70d318aa4eea73ee6d4c87b7a685710de98820331533c0674df1b6598912ad 2433488 python-django-doc_1.4.5-1+deb7u7_all.deb Files: f5dcce7fb07759a1330e822a68874905 1945 python optional python-django_1.4.5-1+deb7u7.dsc 1d15ead2feaf347356c5d124fd7b8ec9 37903 python optional python-django_1.4.5-1+deb7u7.debian.tar.gz ea5bd2a0482b381e0239726f5c96fed6 5366586 python optional python-django_1.4.5-1+deb7u7_all.deb f1b315b1a707aa95bcaeed340861fa74 2433488 doc optional python-django-doc_1.4.5-1+deb7u7_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.22 (GNU/Linux) Comment: Signed by Raphael Hertzog iQEcBAEBCAAGBQJTdLxUAAoJEAOIHavrwpq5gisIAKmPOITy+LmS1TQEd+LCvrpj cxUDJOcrrIFZ1XA3xgokUaZs8WqfoA9ECrgk2igihdkq72z4USIMQsRLC9BvgPue xTzN1uOAvyrK3VJSbmrOZZ0SwLz5jmYKydFmhirjFLf9Qo/WG4RK98tDKsGGhKq2 UMdmHLr2FLU6VyilICwXC4T/kqPXYA+9vsTtkvCJ20iik2Z6ewY50zWRMKwphD1d pWSWA7/bWNseF5M66cIo7KXT8wcHUi0aCK5BrWWn7T9j7ESu15Q/bTj51/TDr1Tv +cZppJKl6ODWKvE9VHKgUOZW5yAJ9xlCUiZXJRGP2CxEXDSfM+OmngHhzgYpWe8= =Gxer -----END PGP SIGNATURE-----