USN-6414-1: Django vulnerability
Wenchao Li discovered that the Django Truncator function incorrectly handled very long HTML input. A remote attacker could possibly use this issue to cause Django to consume resources, leading to a denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Django vulnerability?
The vulnerability ID for this Django vulnerability is USN-6414-1.
What is the impact of this Django vulnerability?
This Django vulnerability could allow a remote attacker to cause a denial of service by consuming resources.
Which versions of Django are affected by this vulnerability?
Versions 3.2.18-1ubuntu0.5, 3.2.12-2ubuntu1.9, and 2.2.12-1ubuntu0.20 of Django are affected by this vulnerability.
How can I fix this Django vulnerability?
To fix this Django vulnerability, update to version 3.2.18-1ubuntu0.5, 3.2.12-2ubuntu1.9, or 2.2.12-1ubuntu0.20 of Django.
Where can I find more information about this Django vulnerability?
You can find more information about this Django vulnerability at the following references: [CVE-2023-43665](https://ubuntu.com/security/CVE-2023-43665), [Ubuntu Security Notice USN-6414-1](https://launchpad.net/ubuntu/+source/python-django/3:3.2.18-1ubuntu0.5), [Launchpad - python-django](https://launchpad.net/ubuntu/+source/python-django/2:3.2.12-2ubuntu1.9).