summaryrefslogtreecommitdiff
path: root/docs
diff options
context:
space:
mode:
authorNatalia <124304+nessita@users.noreply.github.com>2023-10-04 13:05:00 -0300
committerNatalia <124304+nessita@users.noreply.github.com>2023-10-04 13:13:06 -0300
commit3db945a6b337443a2792a70b3971b2c2a3d40b1c (patch)
treeb5c9f416eaa0021563444ad002627565f9768115 /docs
parent8124c42601b9abfeb234056092a62a22a22107cb (diff)
[5.0.x] Added CVE-2023-43665 to security archive.
Backport of 4e790271e3e65c9ad037b347a34fa95e11982228 from main
Diffstat (limited to 'docs')
-rw-r--r--docs/releases/security.txt11
1 files changed, 11 insertions, 0 deletions
diff --git a/docs/releases/security.txt b/docs/releases/security.txt
index 34394c50b0..6fdee8bf57 100644
--- a/docs/releases/security.txt
+++ b/docs/releases/security.txt
@@ -36,6 +36,17 @@ Issues under Django's security process
All security issues have been handled under versions of Django's security
process. These are listed below.
+October 4, 2023 - :cve:`2023-43665`
+-------------------------------------
+
+Denial-of-service possibility in ``django.utils.text.Truncator``.
+`Full description
+<https://www.djangoproject.com/weblog/2023/oct/04/security-releases/>`__
+
+* Django 4.2 :commit:`(patch) <be9c27c4d18c2e6a5be8af4e53c0797440794473>`
+* Django 4.1 :commit:`(patch) <c7b7024742250414e426ad49fb80db943e7ba4e8>`
+* Django 3.2 :commit:`(patch) <ccdade1a0262537868d7ca64374de3d957ca50c5>`
+
September 4, 2023 - :cve:`2023-41164`
-------------------------------------