Go to file
Narpat Mali ab9a31fabc python3-django: fix CVE-2023-41164
In Django 3.2 before 3.2.21, 4 before 4.1.11, and 4.2 before 4.2.5,
``django.utils.encoding.uri_to_iri()`` was subject to potential denial
of service attack via certain inputs with a very large number of Unicode
characters.

Since, there is no ptest available for python3-django so have not
tested the patch changes at runtime.

References:
https://security-tracker.debian.org/tracker/CVE-2023-41164
https://www.djangoproject.com/weblog/2023/sep/04/security-releases/

Signed-off-by: Narpat Mali <narpat.mali@windriver.com>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
2023-09-27 10:23:14 -04:00
contrib pw-am.sh: update to new patcwork system 2022-02-28 08:39:26 -08:00
meta/recipes-support/libcroco libcroco: Add fix for CVE-2020-12825 2023-04-13 08:26:15 -04:00
meta-filesystems fuse3: fix ptest test_passthrough_hp failure 2022-08-16 11:47:31 -07:00
meta-gnome meta-oe-components: Avoid usage of nobranch=1 2023-09-04 12:01:53 -04:00
meta-initramfs klibc: Recognise --dyld-prefix clang option 2022-05-03 06:49:07 -07:00
meta-multimedia dleyna-{server,renderer}: fix dev-so QA issue with multilib 2023-04-13 08:26:23 -04:00
meta-networking frr: Fix CVE-2023-41909 2023-09-23 13:38:49 -04:00
meta-oe c-ares: CVE-ID correction for CVE-2022-4904 2023-09-27 10:23:10 -04:00
meta-perl libcrypt-openssl-rsa-perl: upgrade 0.32 -> 0.33 2023-03-29 16:20:46 -04:00
meta-python python3-django: fix CVE-2023-41164 2023-09-27 10:23:14 -04:00
meta-webserver webserver: nginx: Add stream 2023-07-04 10:20:46 -04:00
meta-xfce xfce4-settings: 4.16.2 -> 4.16.5 2022-12-26 14:57:03 -05:00
.gitignore .gitignore: add *.pyc and *.pyo 2019-06-15 16:45:33 -07:00
COPYING.MIT add README and license for this layer 2011-02-13 16:47:32 +01:00
README meta-openemnedded: Add myself as kirkstone maintainer 2022-04-23 17:14:31 -07:00

Collection of layers for the OE-core universe

Main layer maintainer: Armin Kuster <akuster808@gmail.com>

This repository is a collection of layers to suppliment OE-Core
with additional packages, Each layer have designated maintainer
Please see the respective READMEs in the layer subdirectories