Alerts This Week
Warning Icon 1 687
Alerts This Week
Warning Icon 1 687

Fedora 42 FEDORA-2025-ad58eb378b critical: python-django5 DoS risks

fedora
Calendar Grey June 19, 2025
Dist Fedora Esm H88
Ubuntu 22.04 patch for nodejs-12 tackles severe DoS and data exposure vulnerabilities with crucial upgrades. Update immediately.
Fixes CVE-2025-32873: Denial-of-service possibility in strip_tags() Fixes CVE-2025-48432: Potential log injection via unescaped request path

Summary

Django is a high-level Python Web framework that encourages rapid

development and a clean, pragmatic design. It focuses on automating as

much as possible and adhering to the DRY (Don't Repeat Yourself)

principle.

Update Information:

Fixes CVE-2025-32873: Denial-of-service possibility in strip_tags() Fixes CVE-2025-48432: Potential log injection via unescaped request path

Change Log

* Mon Jun 9 2025 Michel Lind - 5.2.2-1 - Update to 5.2.2 - Fixes CVE-2025-32873: Denial-of-service possibility in strip_tags() - Fixes CVE-2025-48432: Potential log injection via unescaped request path

References


[ 1 ] Bug #2365047 - CVE-2025-32873 python-django5: Django StripTags Denial of Service [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2365047

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-ad58eb378b' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: python-django5
Product: Fedora 42
Version: 5.2.2
Release: 1.fc42
Summary: A high-level Python Web framework

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here