~ubuntu-branches/ubuntu/saucy/python-django/saucy-security

  • Committer: Package Import Robot
  • Author(s): Seth Arnold
  • Date: 2014-05-14 11:00:30 UTC
  • Revision ID: package-import@ubuntu.com-20140514110030-yhmd7dx55yxd735g
Tags: 1.5.4-1ubuntu1.3
* SECURITY UPDATE: cache coherency problems in old Internet Explorer
  compatibility functions lead to loss of privacy and cache poisoning
  attacks. (LP: #1317663)
  - debian/patches/drop_fix_ie_for_vary_1_5.diff: remove fix_IE_for_vary()
    and fix_IE_for_attach() functions so Cache-Control and Vary headers are
    no longer modified. This may introduce some regressions for IE 6 and IE 7
    users. Patch from upstream.
  - CVE-2014-1418
* SECURITY UPDATE: The validation for redirects did not correctly validate
  some malformed URLs, which are accepted by some browsers. This allows a
  user to be redirected to an unsafe URL unexpectedly.
  - debian/patches/is_safe_url_1_5.diff: Forbid URLs starting with '///',
    forbid URLs without a host but with a path. Patch from upstream.
Filename Latest Rev Last Changed Committer Comment Size
..
.pc 4.4.7 13 years ago Bazaar Package Importer New upstream stable release. Diff
debian 2 17 years ago Bazaar Package Importer [ Brett Parker ] * 0.95 release - initial packagin Diff
django 1 17 years ago Bazaar Package Importer Import upstream version 0.95 Diff
docs 1 17 years ago Bazaar Package Importer Import upstream version 0.95 Diff
extras 1 17 years ago Bazaar Package Importer Import upstream version 0.95 Diff
scripts 16 15 years ago Bazaar Package Importer * Merge from Debian (LP: #264191), remaining chang Diff
tests 1.3.4 14 years ago Bazaar Package Importer Import upstream version 1.2~alpha1 Diff
AUTHORS 47 10 years ago Package Import Robot * New upstream security release. https://www.dja 20.8 KB Diff Download File
INSTALL 1.1.21 10 years ago Package Import Robot Import upstream version 1.5.1 667 bytes Diff Download File
LICENSE 1.2.1 15 years ago Bazaar Package Importer Import upstream version 1.0 1.5 KB Diff Download File
MANIFEST.in 47 10 years ago Package Import Robot * New upstream security release. https://www.dja 1.6 KB Diff Download File
PKG-INFO 49 10 years ago Package Import Robot * New upstream security release. Fixes CVE-2013-14 1.2 KB Diff Download File
README.rst 1.3.7 10 years ago Package Import Robot Import upstream version 1.5 1.7 KB Diff Download File
setup.cfg 47 10 years ago Package Import Robot * New upstream security release. https://www.dja 169 bytes Diff Download File
setup.py 49 10 years ago Package Import Robot * New upstream security release. Fixes CVE-2013-14 4.4 KB Diff Download File