Vulnerability Bulletins

DSA-3338 python-django - security update

   
Affected software Debian
 
Lin Hua Cheng discovered that a session could be created when anonymouslyaccessing the django.contrib.auth.views.logout view. This could allowremote attackers to saturate the session store or cause other userssession records to be evicted.

More info:

https://www.debian.org/security/2015/dsa-3338