USN-3559-1: Django vulnerabilities
USN-3559-1: Django vulnerabilities Ubuntu Security Notice USN-3559-1 7th February, 2018 python-django vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Summary Several security issues were fixed in Django. Software description python-django – High-level Python web development framework Details It was discovered that Django incorrectly handled certain requests.An attacker could possibly use this to access sensitive information.(CVE-2017-12794, CVE-2018-6188) Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 17.10: python3-django 1:1.11.4-1ubuntu1.1 python-django 1:1.11.4-1ubuntu1.1 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References CVE-2017-12794, CVE-2018-6188 Source: USN-3559-1: Django vulnerabilities