CVE-2015-0221
Publication date 13 January 2015
Last updated 24 July 2024
Ubuntu priority
The django.views.static.serve view in Django before 1.4.18, 1.6.x before 1.6.10, and 1.7.x before 1.7.3 reads files an entire line at a time, which allows remote attackers to cause a denial of service (memory consumption) via a long line in a file.
Status
Package | Ubuntu Release | Status |
---|---|---|
python-django | ||
14.04 LTS trusty |
Fixed 1.6.1-2ubuntu0.6
|
|
References
Related Ubuntu Security Notices (USN)
- USN-2469-1
- Django vulnerabilities
- 13 January 2015