Security update for python-Django
This update for python-Django fixes the following issues: - CVE-2023-36053: Fixed potential regular expression denial of service vulnerability in EmailValidator/URLValidator (boo#1212742) - CVE-2023-24580: Fixed potential denial-of-service vulnerability in file uploads (boo#1208082) - CVE-2023-23969: Fixed potential denial-of-service via Accept-Language headers (boo#1207565) - CVE-2022-41323: Fixed potential denial-of-service vulnerability in internationalized URLs (boo#1203793)
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for python-Django fixes the following issues: - CVE-2023-36053: Fixed potential regular expression denial of service vulnerability in EmailValidator/URLValidator (boo#1212742) - CVE-2023-24580: Fixed potential denial-of-service vulnerability in file uploads (boo#1208082) - CVE-2023-23969: Fixed potential denial-of-service via Accept-Language headers (boo#1207565) - CVE-2022-41323: Fixed potential denial-of-service vulnerability in internationalized URLs (boo#1203793)
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1203793
- https://bugzilla.suse.com/1207565
- https://bugzilla.suse.com/1208082
- https://bugzilla.suse.com/1212742
- https://lists.opensuse.org/archives/list/[email protected]/thread/XIBAQZUQ2RHKRUEWEHTVUYM66J3IOWLL/
- https://www.suse.com/security/cve/CVE-2022-41323
- https://www.suse.com/security/cve/CVE-2023-23969
- https://www.suse.com/security/cve/CVE-2023-24580
- https://www.suse.com/security/cve/CVE-2023-36053