Vulnerability Bulletins

DSA-3230 django-markupfield - security update

   
Affected software Debian
 
James P. Turk discovered that the ReST renderer in django-markupfield,a custom Django field for easy use of markup in text fields, didntdisable the ..raw directive, allowing remote attackers to includearbitrary files.

More info:

https://www.debian.org/security/2015/dsa-3230