-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 3.0 (quilt) Source: python-django Binary: python-django, python3-django, python-django-common, python-django-doc Architecture: all Version: 1.7.9-1 Maintainer: Debian Python Modules Team <[email protected]> Uploaders: Luke Faraone <[email protected]>, Raphaël Hertzog <[email protected]>, Brian May <[email protected]> Homepage: http://www.djangoproject.com/ Standards-Version: 3.9.6 Vcs-Browser: http://anonscm.debian.org/cgit/python-modules/packages/python-django.git Vcs-Git: git://anonscm.debian.org/python-modules/packages/python-django.git Build-Depends: debhelper (>= 9), dh-python, python-all (>= 2.6.6-3~), python3-all, python-sphinx (>= 1.0.8), locales (>= 0), python-bcrypt, python3-bcrypt, python-docutils, python3-docutils, python-numpy, python3-numpy, python-pil, python3-pil, python-yaml, python3-yaml, python-tz, python3-tz, python-setuptools, python3-setuptools, python-sqlparse, python3-sqlparse Build-Depends-Indep: libjs-jquery Package-List: python-django deb python optional arch=all python-django-common deb python optional arch=all python-django-doc deb doc optional arch=all python3-django deb python optional arch=all Checksums-Sha1: 473599c2e2810a30bb86fd9c730ef52f23e5f709 7605194 python-django_1.7.9.orig.tar.gz 11da9191dd93e78898c047b10083193947bee15a 21788 python-django_1.7.9-1.debian.tar.xz Checksums-Sha256: 4f3f9fe4e5d20ff8ed6a90b5d2f2df2d8fc054e478cdcc3db81c6b29bd217860 7605194 python-django_1.7.9.orig.tar.gz d09b3c3a042a2010f081139f8a0d6fd81c3c83bb11152c35d4a31e4a84ecd8bd 21788 python-django_1.7.9-1.debian.tar.xz Files: 6ea69f3ebb73755bd2a4c9e3743f17c8 7605194 python-django_1.7.9.orig.tar.gz 137aa789846f91d0271275fb33ba7316 21788 python-django_1.7.9-1.debian.tar.xz -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 Comment: Signed by Raphael Hertzog iQEcBAEBCAAGBQJVnbiWAAoJEAOIHavrwpq5xUUH/3+qhzfwmv7blWtk2O17w0Z7 ppfxM+PmEJqPHcT+hBxx2h08gk2NNCi8Qc1CLD+o4kzz7yxBIe6sAJOX+mOnbH7n ShDpJ9m3lux1NVxoVZbWet55fvZWA6bBtNvutbgSK2hFxBwiEVE5/jy6hPKJgs4d LSTxSdxPScUSDDAhaDicGWtATEsnjlplIawbbFRh6QoLd0Q9lMy5h7Q4zy1YkR4i 2xPmA5u7wJy9aAvL1cXXxYYs8tlqRVATeu4kK0akdt4B0g4d4uGBpeszS5iVte8+ FPN0ijkSHARGFqSTXI19wyGA1NHxHe967HDva/PpWnN0fZcbbgov6TdO76pZRog= =v1dj -----END PGP SIGNATURE----- Changes: python-django (1.7.9-1) unstable; urgency=medium * New upstream security release: https://www.djangoproject.com/weblog/2015/jul/08/security-releases/ It fixes: - CVE-2015-5143: possible denial-of-service by filling session store - CVE-2015-5144: possible header injection since validators accept newlines in input -- Raphaël Hertzog <[email protected]> Thu, 09 Jul 2015 01:33:31 +0200