Branches for Saucy

Name Status Last Modified Last Commit
lp:ubuntu/saucy/python-django 2 Mature 2013-09-27 04:51:31 UTC
50. Pull patch from git to isolate a DB t...

Author: Adam Conrad
Revision Date: 2013-09-27 04:51:31 UTC

Pull patch from git to isolate a DB test in testsuite (LP: #1231923)

lp:ubuntu/saucy-security/python-django bug 2 Mature 2014-05-15 01:16:36 UTC
53. * SECURITY UPDATE: cache coherency pr...

Author: Seth Arnold
Revision Date: 2014-05-14 11:00:30 UTC

* SECURITY UPDATE: cache coherency problems in old Internet Explorer
  compatibility functions lead to loss of privacy and cache poisoning
  attacks. (LP: #1317663)
  - debian/patches/drop_fix_ie_for_vary_1_5.diff: remove fix_IE_for_vary()
    and fix_IE_for_attach() functions so Cache-Control and Vary headers are
    no longer modified. This may introduce some regressions for IE 6 and IE 7
    users. Patch from upstream.
  - CVE-2014-1418
* SECURITY UPDATE: The validation for redirects did not correctly validate
  some malformed URLs, which are accepted by some browsers. This allows a
  user to be redirected to an unsafe URL unexpectedly.
  - debian/patches/is_safe_url_1_5.diff: Forbid URLs starting with '///',
    forbid URLs without a host but with a path. Patch from upstream.

lp:ubuntu/saucy-updates/python-django 2 Mature 2014-05-14 11:00:30 UTC
53. * SECURITY UPDATE: cache coherency pr...

Author: Seth Arnold
Revision Date: 2014-05-14 11:00:30 UTC

* SECURITY UPDATE: cache coherency problems in old Internet Explorer
  compatibility functions lead to loss of privacy and cache poisoning
  attacks. (LP: #1317663)
  - debian/patches/drop_fix_ie_for_vary_1_5.diff: remove fix_IE_for_vary()
    and fix_IE_for_attach() functions so Cache-Control and Vary headers are
    no longer modified. This may introduce some regressions for IE 6 and IE 7
    users. Patch from upstream.
  - CVE-2014-1418
* SECURITY UPDATE: The validation for redirects did not correctly validate
  some malformed URLs, which are accepted by some browsers. This allows a
  user to be redirected to an unsafe URL unexpectedly.
  - debian/patches/is_safe_url_1_5.diff: Forbid URLs starting with '///',
    forbid URLs without a host but with a path. Patch from upstream.

lp:ubuntu/saucy-proposed/python-django 1 Development 2013-09-27 04:51:31 UTC
50. Pull patch from git to isolate a DB t...

Author: Adam Conrad
Revision Date: 2013-09-27 04:51:31 UTC

Pull patch from git to isolate a DB test in testsuite (LP: #1231923)

14 of 4 results