News for package python-django

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 3.0 (quilt)
Source: python-django
Binary: python-django, python3-django, python-django-common, python-django-doc
Architecture: all
Version: 1.7.7-1+deb8u1
Maintainer: Debian Python Modules Team <[email protected]>
Uploaders: Luke Faraone <[email protected]>, Raphaël Hertzog <[email protected]>, Brian May <[email protected]>
Homepage: http://www.djangoproject.com/
Standards-Version: 3.9.6
Vcs-Browser: http://anonscm.debian.org/cgit/python-modules/packages/python-django.git
Vcs-Git: git://anonscm.debian.org/python-modules/packages/python-django.git
Build-Depends: debhelper (>= 9), dh-python, python-all (>= 2.6.6-3~), python3-all, python-sphinx (>= 1.0.8), locales (>= 0), python-bcrypt, python3-bcrypt, python-docutils, python3-docutils, python-numpy, python3-numpy, python-pil, python3-pil, python-yaml, python3-yaml, python-tz, python3-tz, python-setuptools, python3-setuptools, python-sqlparse, python3-sqlparse
Build-Depends-Indep: libjs-jquery
Package-List:
 python-django deb python optional arch=all
 python-django-common deb python optional arch=all
 python-django-doc deb doc optional arch=all
 python3-django deb python optional arch=all
Checksums-Sha1:
 614cc9f8e1af6630c54300f6bdd88e7b783614c3 7603286 python-django_1.7.7.orig.tar.gz
 2654671144a8701ef953d1c0c0ed68eb19660b49 24916 python-django_1.7.7-1+deb8u1.debian.tar.xz
Checksums-Sha256:
 4816f892063569ca9a77584fa23cb4995c1b3b954ef875102a8219229cbd2e33 7603286 python-django_1.7.7.orig.tar.gz
 98be451f1c55a729086341c74209aeed99b4662a96ffc77e5cacbd104a0ad62b 24916 python-django_1.7.7-1+deb8u1.debian.tar.xz
Files:
 a62d6598966947d150525ad2ab20fb0c 7603286 python-django_1.7.7.orig.tar.gz
 741e17277dc5d7d234986d027efa87f3 24916 python-django_1.7.7-1+deb8u1.debian.tar.xz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=t+v8
-----END PGP SIGNATURE-----

Changes:
python-django (1.7.7-1+deb8u1) jessie-security; urgency=high

  * SECURITY UPDATE:
    - CVE-2015-5143: possible denial-of-service via session store
    - CVE-2015-5144: email header injection via newlines

 -- Luke Faraone <[email protected]>  Tue, 07 Jul 2015 05:07:10 +0000