{"id":"MGASA-2015-0327","summary":"Updated python-django and python-django14 packages fix security vulnerabilities","details":"Lin Hua Cheng discovered that Django incorrectly handled the session store.\nA remote attacker could use this issue to cause the session store to fill\nup, resulting in a denial of service.\n","modified":"2026-04-16T06:25:48.702570404Z","published":"2015-08-27T20:49:46Z","upstream":["CVE-2015-5963","CVE-2015-5964"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2015-0327.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=16607"},{"type":"WEB","url":"https://www.djangoproject.com/weblog/2015/aug/18/security-releases/"},{"type":"WEB","url":"http://www.ubuntu.com/usn/usn-2720-1/"}],"affected":[{"package":{"name":"python-django14","ecosystem":"Mageia:4","purl":"pkg:rpm/mageia/python-django14?arch=source&distro=mageia-4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.4.22-1.mga4"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2015-0327.json"}},{"package":{"name":"python-django","ecosystem":"Mageia:5","purl":"pkg:rpm/mageia/python-django?arch=source&distro=mageia-5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.8.4-1.mga5"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2015-0327.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}