File _patchinfo of Package patchinfo
<patchinfo> <category>security</category> <rating>moderate</rating> <packager>wrosenauer</packager> <summary>update for python-django</summary> <description>This python-django update fixes several security issues. - Update to version 1.4.8 (bnc#840832, CVE-2013-1443): + Fixed denial-of-service via large passwords - Changes from version 1.4.7: + Fixed directory traversal with ssi template tag - Changes from version 1.4.6: + Fixed Cross-site scripting (XSS) in admin interface + Fixed Possible XSS via is_safe_url </description> <issue tracker="cve" id="CVE-2013-1443"/> <issue tracker="bnc" id="840832"/> </patchinfo>