diff options
| author | Leon Anavi <leon.anavi@konsulko.com> | 2021-06-02 16:36:02 +0300 | 
|---|---|---|
| committer | Armin Kuster <akuster808@gmail.com> | 2021-06-27 07:50:07 -0700 | 
| commit | f0812a84c9cc84aadde1778d1bdc31c6f69c8357 (patch) | |
| tree | 6295a2aa3dee973c7f2f9b5f284c080155628d75 /meta-python/recipes-devtools/python/python-pyzmq | |
| parent | adf023f1921833d9aa23b262f8a6a8675768f599 (diff) | |
| download | meta-openembedded-f0812a84c9cc84aadde1778d1bdc31c6f69c8357.tar.gz | |
python3-django: Upgrade 3.2.3 -> 3.2.4
Upgrade to release 3.2.4:
- CVE-2021-33203: Potential directory traversal via admindocs
- CVE-2021-33571: Possible indeterminate SSRF, RFI, and LFI attacks
  since validators accepted leading zeros in IPv4 addresses
- Fixed a bug in Django 3.2 where a final catch-all view in the
  admin didn't respect the server-provided value of SCRIPT_NAME
  when redirecting unauthenticated users to the login page.
- Fixed a bug in Django 3.2 where a system check would crash on an
  abstract model
- Prevented unnecessary initialization of unused caches following
  a regression in Django 3.2
- Fixed a crash in Django 3.2 that could occur when running
  mod_wsgi with the recommended settings while the Windows
  colorama library was installed
- Fixed a bug in Django 3.2 that would trigger the auto-reloader
  for template changes when directory paths were specified with
  strings
- Fixed a regression in Django 3.2 that caused a crash of
  auto-reloader with AttributeError, e.g. inside a Conda
  environment
- Fixed a regression in Django 3.2 that caused a loss of precision
  for operations with DecimalField on MySQL
Signed-off-by: Leon Anavi <leon.anavi@konsulko.com>
Signed-off-by: Khem Raj <raj.khem@gmail.com>
Signed-off-by: Trevor Gamblin <trevor.gamblin@windriver.com>
(cherry picked from commit 624e3e18982775d2ea88e55e16d179420f0575fc)
Signed-off-by: Armin Kuster <akuster808@gmail.com>
Diffstat (limited to 'meta-python/recipes-devtools/python/python-pyzmq')
0 files changed, 0 insertions, 0 deletions
