RHSA-2025:4187: Moderate: Red Hat OpenStack Platform 17.1 (python-django) security update
Django is a high-level Python Web framework that encourages rapid<br>development and a clean, pragmatic design. It focuses on automating as much<br>as possible and adhering to the DRY (Don't Repeat Yourself) principle.<br>Security Fix(es):<br><li> Potential regular expression denial-of-service in</li> django.utils.text.Truncator.words() (CVE-2024-27351)<br>For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE<br>page listed in the References section.
Other sources
Moderate: Red Hat OpenStack Platform 17.1 (python-django) security update
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:4187?
The severity level of RHSA-2025:4187 is categorized as moderate.
How do I fix RHSA-2025:4187?
To fix RHSA-2025:4187, upgrade to python-django version 2.2.24-9.el9 or python3-django version 2.2.24-9.el9.
What issue does RHSA-2025:4187 address?
RHSA-2025:4187 addresses a potential regular expression denial of service vulnerability in Django.
Which software versions are affected by RHSA-2025:4187?
The affected software versions for RHSA-2025:4187 include python-django and python3-django versions prior to 2.2.24-9.el9.
Who is impacted by RHSA-2025:4187?
Users of Red Hat OpenStack services utilizing vulnerable versions of Django are impacted by RHSA-2025:4187.