From 068a80d717ee5a8cf3a6ffbeb0908f2d3ad599dd Mon Sep 17 00:00:00 2001 From: Tim Graham Date: Tue, 18 Aug 2015 13:46:47 -0400 Subject: [PATCH] Added today's issue to the security archive. --- docs/releases/security.txt | 16 ++++++++++++++++ 1 file changed, 16 insertions(+) diff --git a/docs/releases/security.txt b/docs/releases/security.txt index d70e3b9046..ce3b88f47f 100644 --- a/docs/releases/security.txt +++ b/docs/releases/security.txt @@ -663,3 +663,19 @@ Versions affected ----------------- * Django 1.8 `(patch) `__ + +August 18, 2015 - CVE-2015-5963/CVE-2015-5964 +~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ + +`CVE-2015-5963 `_ +and +`CVE-2015-5964 `_: +Denial-of-service possibility in ``logout()`` view by filling session store. +`Full description `__ + +Versions affected +----------------- + +* Django 1.8 `(patch) `__ +* Django 1.7 `(patch) `__ +* Django 1.4 `(patch) `__