REDHAT-BUG-2302434: Medium severity Django Django vulnerability
Description: urlize and urlizetrunc were subject to a potential denial-of-service attack via very large inputs with a specific sequence of characters.
Affected versions =================
Django main development branch Django 5.1 (currently at release candidate status) Django 5.0 Django 4.2
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2302434?
The severity of REDHAT-BUG-2302434 is classified as high due to the potential for denial-of-service attacks.
How do I fix REDHAT-BUG-2302434?
To fix REDHAT-BUG-2302434, update your Django installation to the latest stable version where the vulnerability is resolved.
Which versions of Django are affected by REDHAT-BUG-2302434?
Django main development branch, Django 5.1 RC, Django 5.0, and Django 4.2 are affected by REDHAT-BUG-2302434.
What type of vulnerability is REDHAT-BUG-2302434?
REDHAT-BUG-2302434 is a denial-of-service vulnerability caused by handling very large input strings.
Is there a workaround for REDHAT-BUG-2302434 while a fix is deployed?
There is no official workaround for REDHAT-BUG-2302434; upgrading to a safe version is recommended.