USN-6378-1: Django vulnerability
It was discovered that Django incorrectly handled certain URIs with a very large number of Unicode characters. A remote attacker could possibly use this issue to cause Django to consume resources or crash, leading to a denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Django vulnerability?
The vulnerability ID for this Django vulnerability is USN-6378-1.
What is the impact of this vulnerability?
This vulnerability could allow a remote attacker to cause Django to consume resources or crash, leading to a denial of service.
Which versions of Python Django are affected by this vulnerability?
Python Django versions 3.2.18-1ubuntu0.4, 3.2.12-2ubuntu1.8, and 2.2.12-1ubuntu0.19 are affected by this vulnerability.
How can I fix this vulnerability?
To fix this vulnerability, update the python3-django package to versions 3.2.18-1ubuntu0.4, 2.2.12-2ubuntu1.8, or 2.2.12-1ubuntu0.19 depending on your version of Python Django.
Where can I find more information about this vulnerability?
You can find more information about this vulnerability on the Ubuntu Security website as well as the launchpad.net links provided.