Alerts This Week
Warning Icon 1 640
Alerts This Week
Warning Icon 1 640

Ubuntu 20.04 LTS: USN-4479-1 Moderate: Django Permission Issue

ubuntu
Calendar Grey September 1, 2020
Dist Ubuntu Esm H88
Numerous vulnerabilities tackled in Django for Ubuntu 20.04 LTS, encompassing access control and possible security breaches.
Several security issues were fixed in Django.

Summary

Several security issues were fixed in Django.

Software Description:

- python-django: High-level Python web development framework

Details:

It was discovered that Django, when used with Python 3.7 or higher,

incorrectly handled directory permissions. A local attacker could possibly

use this issue to obtain sensitive information, or escalate permissions.

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 20.04 LTS:
  python3-django                  2:2.2.12-1ubuntu0.2

In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-4479-1

CVE-2020-24583, CVE-2020-24584

September 01, 2020

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here