Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-2316

Опубликовано: 25 мар. 2015
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

The utils.html.strip_tags function in Django 1.6.x before 1.6.11, 1.7.x before 1.7.7, and 1.8.x before 1.8c1, when using certain versions of Python, allows remote attackers to cause a denial of service (infinite loop) by increasing the length of the input string.

РелизСтатусПримечание
devel

released

1.7.6-1ubuntu2
esm-infra-legacy/trusty

not-affected

1.6.1-2ubuntu0.8
lucid

not-affected

1.1.1-2ubuntu1.16
precise

not-affected

1.3.1-4ubuntu1.15
trusty

released

1.6.1-2ubuntu0.8
trusty/esm

not-affected

1.6.1-2ubuntu0.8
upstream

released

1.4.20,1.6.11,1.7.7,1.8c1
utopic

released

1.6.6-1ubuntu2.2

Показывать по

EPSS

Процентиль: 84%
0.0227
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
больше 10 лет назад

The utils.html.strip_tags function in Django 1.6.x before 1.6.11, 1.7.x before 1.7.7, and 1.8.x before 1.8c1, when using certain versions of Python, allows remote attackers to cause a denial of service (infinite loop) by increasing the length of the input string.

nvd
больше 10 лет назад

The utils.html.strip_tags function in Django 1.6.x before 1.6.11, 1.7.x before 1.7.7, and 1.8.x before 1.8c1, when using certain versions of Python, allows remote attackers to cause a denial of service (infinite loop) by increasing the length of the input string.

debian
больше 10 лет назад

The utils.html.strip_tags function in Django 1.6.x before 1.6.11, 1.7. ...

CVSS3: 7.5
github
около 3 лет назад

Django Denial-of-service possibility with strip_tags

EPSS

Процентиль: 84%
0.0227
Низкий

5 Medium

CVSS2