diff options
author | adam <adam@pkgsrc.org> | 2015-01-14 17:07:12 +0000 |
---|---|---|
committer | adam <adam@pkgsrc.org> | 2015-01-14 17:07:12 +0000 |
commit | 92747c07fb16caa2e3d68fcc9795363ae6f1f495 (patch) | |
tree | 5e8d9fbb18f8dd0364754e8ab6054cda9a920306 /www | |
parent | 2c0601c43371858335b477834cbb051d1069d8d2 (diff) | |
download | pkgsrc-92747c07fb16caa2e3d68fcc9795363ae6f1f495.tar.gz |
Fixed securify issues:
* WSGI header spoofing via underscore/dash conflation
* Mitigated possible XSS attack via user-supplied redirect URLs
* Denial-of-service attack against django.views.static.serve
* Database denial-of-service with ModelMultipleChoiceField
Diffstat (limited to 'www')
-rw-r--r-- | www/py-django/Makefile | 4 | ||||
-rw-r--r-- | www/py-django/distinfo | 8 | ||||
-rw-r--r-- | www/py-django14/Makefile | 4 | ||||
-rw-r--r-- | www/py-django14/distinfo | 8 |
4 files changed, 12 insertions, 12 deletions
diff --git a/www/py-django/Makefile b/www/py-django/Makefile index ff9c496704f..a0957f8ba22 100644 --- a/www/py-django/Makefile +++ b/www/py-django/Makefile @@ -1,6 +1,6 @@ -# $NetBSD: Makefile,v 1.56 2015/01/06 23:07:32 joerg Exp $ +# $NetBSD: Makefile,v 1.57 2015/01/14 17:07:12 adam Exp $ -DISTNAME= Django-1.7.2 +DISTNAME= Django-1.7.3 PKGNAME= ${PYPKGPREFIX}-${DISTNAME:tl} CATEGORIES= www python MASTER_SITES= http://www.djangoproject.com/m/releases/${PKGVERSION_NOREV:R}/ diff --git a/www/py-django/distinfo b/www/py-django/distinfo index d2c4d3d12e1..2e8b3753fcc 100644 --- a/www/py-django/distinfo +++ b/www/py-django/distinfo @@ -1,5 +1,5 @@ -$NetBSD: distinfo,v 1.39 2015/01/03 15:47:21 adam Exp $ +$NetBSD: distinfo,v 1.40 2015/01/14 17:07:12 adam Exp $ -SHA1 (Django-1.7.2.tar.gz) = 142168eef96423d3586d9bd99ca9b3c8d6ae652a -RMD160 (Django-1.7.2.tar.gz) = 444c021c2df71c4bb95bc0ae4fef9c65d95d2378 -Size (Django-1.7.2.tar.gz) = 7577911 bytes +SHA1 (Django-1.7.3.tar.gz) = 2577e8e40999f5120b091c17e8cabfb518917ca2 +RMD160 (Django-1.7.3.tar.gz) = 6b5cb798429938b3187b94ea62d355da7f4f5186 +Size (Django-1.7.3.tar.gz) = 7589559 bytes diff --git a/www/py-django14/Makefile b/www/py-django14/Makefile index 8ef8d515dcc..8f8f0d170ec 100644 --- a/www/py-django14/Makefile +++ b/www/py-django14/Makefile @@ -1,6 +1,6 @@ -# $NetBSD: Makefile,v 1.8 2014/08/23 12:16:45 adam Exp $ +# $NetBSD: Makefile,v 1.9 2015/01/14 17:07:12 adam Exp $ -DISTNAME= Django-1.4.14 +DISTNAME= Django-1.4.18 PKGNAME= ${PYPKGPREFIX}-${DISTNAME:tl} CATEGORIES= www python MASTER_SITES= http://www.djangoproject.com/m/releases/${PKGVERSION_NOREV:R}/ diff --git a/www/py-django14/distinfo b/www/py-django14/distinfo index 7c2da1daf62..8d1e5ce728f 100644 --- a/www/py-django14/distinfo +++ b/www/py-django14/distinfo @@ -1,5 +1,5 @@ -$NetBSD: distinfo,v 1.4 2014/08/23 12:16:45 adam Exp $ +$NetBSD: distinfo,v 1.5 2015/01/14 17:07:12 adam Exp $ -SHA1 (Django-1.4.14.tar.gz) = ce1db876daceea9f9252b3a886e70ebda8978d6c -RMD160 (Django-1.4.14.tar.gz) = 7ba597bc413ce855d881b6aecb5f2e7d9068104d -Size (Django-1.4.14.tar.gz) = 7754876 bytes +SHA1 (Django-1.4.18.tar.gz) = b3d5211d4269dc1f93ac4ae7897f60a3f06b70c0 +RMD160 (Django-1.4.18.tar.gz) = eb57eecc73d3c2619205c52ae2f31000368f5011 +Size (Django-1.4.18.tar.gz) = 7876896 bytes |