diff options
author | adam <adam@pkgsrc.org> | 2015-01-14 17:07:12 +0000 |
---|---|---|
committer | adam <adam@pkgsrc.org> | 2015-01-14 17:07:12 +0000 |
commit | 92747c07fb16caa2e3d68fcc9795363ae6f1f495 (patch) | |
tree | 5e8d9fbb18f8dd0364754e8ab6054cda9a920306 /www/py-django | |
parent | 2c0601c43371858335b477834cbb051d1069d8d2 (diff) | |
download | pkgsrc-92747c07fb16caa2e3d68fcc9795363ae6f1f495.tar.gz |
Fixed securify issues:
* WSGI header spoofing via underscore/dash conflation
* Mitigated possible XSS attack via user-supplied redirect URLs
* Denial-of-service attack against django.views.static.serve
* Database denial-of-service with ModelMultipleChoiceField
Diffstat (limited to 'www/py-django')
-rw-r--r-- | www/py-django/Makefile | 4 | ||||
-rw-r--r-- | www/py-django/distinfo | 8 |
2 files changed, 6 insertions, 6 deletions
diff --git a/www/py-django/Makefile b/www/py-django/Makefile index ff9c496704f..a0957f8ba22 100644 --- a/www/py-django/Makefile +++ b/www/py-django/Makefile @@ -1,6 +1,6 @@ -# $NetBSD: Makefile,v 1.56 2015/01/06 23:07:32 joerg Exp $ +# $NetBSD: Makefile,v 1.57 2015/01/14 17:07:12 adam Exp $ -DISTNAME= Django-1.7.2 +DISTNAME= Django-1.7.3 PKGNAME= ${PYPKGPREFIX}-${DISTNAME:tl} CATEGORIES= www python MASTER_SITES= http://www.djangoproject.com/m/releases/${PKGVERSION_NOREV:R}/ diff --git a/www/py-django/distinfo b/www/py-django/distinfo index d2c4d3d12e1..2e8b3753fcc 100644 --- a/www/py-django/distinfo +++ b/www/py-django/distinfo @@ -1,5 +1,5 @@ -$NetBSD: distinfo,v 1.39 2015/01/03 15:47:21 adam Exp $ +$NetBSD: distinfo,v 1.40 2015/01/14 17:07:12 adam Exp $ -SHA1 (Django-1.7.2.tar.gz) = 142168eef96423d3586d9bd99ca9b3c8d6ae652a -RMD160 (Django-1.7.2.tar.gz) = 444c021c2df71c4bb95bc0ae4fef9c65d95d2378 -Size (Django-1.7.2.tar.gz) = 7577911 bytes +SHA1 (Django-1.7.3.tar.gz) = 2577e8e40999f5120b091c17e8cabfb518917ca2 +RMD160 (Django-1.7.3.tar.gz) = 6b5cb798429938b3187b94ea62d355da7f4f5186 +Size (Django-1.7.3.tar.gz) = 7589559 bytes |