An issue was discovered in Django 2.2 before 2.2.16, 3.0 before 3.0.10, and 3.1 before 3.1.1 (when Python 3.7+ is used). The intermediate-level directories of the filesystem cache had the systems standard umask rather than 0o077.
During installation, installed file permissions are set to allow anyone to modify those files.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Django | Djangoproject | 2.2 (including) | 2.2.16 (excluding) |
Django | Djangoproject | 3.0 (including) | 3.0.10 (excluding) |
Django | Djangoproject | 3.1 (including) | 3.1.1 (excluding) |
Python-django | Ubuntu | devel | * |
Python-django | Ubuntu | focal | * |
Python-django | Ubuntu | trusty | * |
Python-django | Ubuntu | upstream | * |