CVE-2015-5143
Publication date 8 July 2015
Last updated 24 July 2024
Ubuntu priority
The session backends in Django before 1.4.21, 1.5.x through 1.6.x, 1.7.x before 1.7.9, and 1.8.x before 1.8.3 allows remote attackers to cause a denial of service (session store consumption) via multiple requests with unique session keys.
Status
Package | Ubuntu Release | Status |
---|---|---|
python-django | ||
14.04 LTS trusty |
Fixed 1.6.1-2ubuntu0.9
|
|
References
Related Ubuntu Security Notices (USN)
- USN-2671-1
- Django vulnerabilities
- 9 July 2015