python-Django1

Edit Package python-Django1
No description set
Refresh
Refresh
Source Files
Filename Size Changed
CVE-2020-13254.patch 0000010390 10.1 KB
CVE-2020-13596.patch 0000003050 2.98 KB
Django-1.11.29.tar.gz 0007977916 7.61 MB
Django-1.11.29.tar.gz.asc 0000002499 2.44 KB
python-Django1-rpmlintrc 0000000214 214 Bytes
python-Django1.changes 0000074369 72.6 KB
python-Django1.keyring 0000017951 17.5 KB
python-Django1.spec 0000004728 4.62 KB
Revision 11 (latest revision is 18)
Flávio Ramalho's avatar Flávio Ramalho (flaviosr) accepted request 817883 from Johannes Grassler's avatar Johannes Grassler (jgrassler) (revision 11)
- Update to version 1.11.29 (bsc#1161919, CVE-2020-7471, bsc#1165022, CVE-2020-9402, bsc#1159447, CVE-2019-19844)
  * Fixed CVE-2020-9402 -- Properly escaped tolerance parameter in GIS functions and aggregates on Oracle.
  * Pinned PyYAML < 5.3 in test requirements.
  * Fixed CVE-2020-7471 -- Properly escaped StringAgg(delimiter) parameter.
  * Fixed timezones tests for PyYAML 5.3+.
  * Fixed CVE-2019-19844 -- Used verified user email for password reset requests.
  * Fixed #31073 -- Prevented CheckboxInput.get_context() from mutating attrs.
  * Fixed #30826 -- Fixed crash of many JSONField lookups when one hand side is key transform.
  * Fixed #30769 -- Fixed a crash when filtering against a subquery JSON/HStoreField annotation.

  * Added patch CVE-2020-13254.patch
  * Added patch CVE-2020-13596.patch
Comments 0
openSUSE Build Service is sponsored by