summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorCarlton Gibson <carlton.gibson@noumenal.es>2019-08-01 11:54:24 +0200
committerCarlton Gibson <carlton.gibson@noumenal.es>2019-08-01 12:06:54 +0200
commitba791617e0ec879bfc764d644246665ead59965f (patch)
tree2bf0aedb473c09f3efa1aeefd64a0c84bebc49e9
parent1e6a5b000189878ef3832d104b960acd4a8c6fc8 (diff)
downloaddjango-ba791617e0ec879bfc764d644246665ead59965f.tar.gz
[1.11.x] Added CVE-2019-14232 to the security release archive.
Backport of 87750787d1e464b7143f366d9485ba20fefc9c94 from master
-rw-r--r--docs/releases/security.txt13
1 files changed, 13 insertions, 0 deletions
diff --git a/docs/releases/security.txt b/docs/releases/security.txt
index 2e1e941988..cbbccb9495 100644
--- a/docs/releases/security.txt
+++ b/docs/releases/security.txt
@@ -974,3 +974,16 @@ Versions affected
* Django 2.2 :commit:`(patch) <77706a3e4766da5d5fb75c4db22a0a59a28e6cd6>`
* Django 2.1 :commit:`(patch) <1e40f427bb8d0fb37cc9f830096a97c36c97af6f>`
* Django 1.11 :commit:`(patch) <32124fc41e75074141b05f10fc55a4f01ff7f050>`
+
+August 1, 2019 - :cve:`2019-14232`
+----------------------------------
+
+Denial-of-service possibility in ``django.utils.text.Truncator``. `Full
+description <https://www.djangoproject.com/weblog/2019/aug/01/security-releases/>`__
+
+Versions affected
+~~~~~~~~~~~~~~~~~
+
+* Django 2.2 :commit:`(patch) <c3289717c6f21a8cf23daff1c78c0c014b94041f>`
+* Django 2.1 :commit:`(patch) <c23723a1551340cc7d3126f04fcfd178fa224193>`
+* Django 1.11 :commit:`(patch) <42a66e969023c00536256469f0e8b8a099ef109d>`