Security update for python-Django
Announcement ID: | SUSE-SU-2015:2327-1 |
---|---|
Rating: | moderate |
References: | |
Cross-References: | |
CVSS scores: |
|
Affected Products: |
|
An update that solves one vulnerability can now be installed.
Description:
This update for python-Django fixes the following issues:
- Add 0004-1.6.x-fixed-a-settings-leak-possibility-in-the-date-.patch to prevent settings leak in date template filter (bsc#955412, CVE-2015-8213)
Patch Instructions:
To install this SUSE update use the SUSE recommended
installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
-
SUSE Enterprise Storage 1.0 1
zypper in -t patch SUSE-Storage-1.0-2015-998=1
Package List:
-
SUSE Enterprise Storage 1.0 1 (noarch)
- python-Django-1.6.11-11.1