First published: Mon Sep 18 2023(Updated: )
It was discovered that Django incorrectly handled certain URIs with a very large number of Unicode characters. A remote attacker could possibly use this issue to cause Django to consume resources or crash, leading to a denial of service.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/python3-django | <3:3.2.18-1ubuntu0.4 | 3:3.2.18-1ubuntu0.4 |
=23.04 | ||
All of | ||
ubuntu/python3-django | <2:3.2.12-2ubuntu1.8 | 2:3.2.12-2ubuntu1.8 |
=22.04 | ||
All of | ||
ubuntu/python3-django | <2:2.2.12-1ubuntu0.19 | 2:2.2.12-1ubuntu0.19 |
=20.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Django vulnerability is USN-6378-1.
This vulnerability could allow a remote attacker to cause Django to consume resources or crash, leading to a denial of service.
Python Django versions 3.2.18-1ubuntu0.4, 3.2.12-2ubuntu1.8, and 2.2.12-1ubuntu0.19 are affected by this vulnerability.
To fix this vulnerability, update the python3-django package to versions 3.2.18-1ubuntu0.4, 2.2.12-2ubuntu1.8, or 2.2.12-1ubuntu0.19 depending on your version of Python Django.
You can find more information about this vulnerability on the Ubuntu Security website as well as the launchpad.net links provided.