An issue was discovered in Django 2.2 before 2.2.13 and 3.0 before 3.0.7. In cases where a memcached backend does not perform key validation, passing malformed cache keys could result in a key collision, and potential data leakage.
The product does not validate, or incorrectly validates, a certificate.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Django | Djangoproject | 2.2 (including) | 2.2.13 (excluding) |
Django | Djangoproject | 3.0 (including) | 3.0.7 (excluding) |
Red Hat OpenStack Platform 13.0 (Queens) | RedHat | python-django-0:1.11.27-3.el7ost | * |
Red Hat OpenStack Platform 13.0 (Queens) for RHEL 7.6 EUS | RedHat | python-django-0:1.11.27-3.el7ost | * |
Red Hat OpenStack Platform 16.1 | RedHat | python-django20-0:2.0.13-12.el8ost | * |
Python-django | Ubuntu | bionic | * |
Python-django | Ubuntu | devel | * |
Python-django | Ubuntu | eoan | * |
Python-django | Ubuntu | focal | * |
Python-django | Ubuntu | trusty | * |
Python-django | Ubuntu | trusty/esm | * |
Python-django | Ubuntu | upstream | * |
Python-django | Ubuntu | xenial | * |