[WID-SEC-2023-0352] Django: Schwachstelle ermöglicht Denial of Service CVSS Base Score 7.5 (hoch) CVSS Temporal Score 6.5 (mittel) Remoteangriff ja Datum 13.02.2023 Stand UPDATE 13.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux Sonstiges UNIX Windows Produktbeschreibung Django ist ein in Python geschriebenes serverseitiges Web-Framework, das einem Model-View-Presenter-Schema folgt. Produkte UPDATE 04.01.2026 SUSE openSUSE UPDATE 17.09.2025 Gentoo Linux UPDATE 21.08.2023 Red Hat Enterprise Linux Ansible Automation Platform 2.4 UPDATE 03.05.2023 Red Hat Enterprise Linux Update Infrastructure (RHUI) UPDATE 19.04.2023 Fedora Linux UPDATE 12.03.2023 SUSE Linux UPDATE 20.02.2023 Debian Linux UPDATE 14.02.2023 Ubuntu Linux 13.02.2023 Open Source Django <4.1.7 Open Source Django <4.0.10 Open Source Django <3.2.18 Angriff Angriff Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Django ausnutzen, um einen Denial of Service Angriff durchzuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben
A remote, anonymous attacker can exploit a vulnerability in Django to conduct a Denial of Service attack. The vulnerability has a CVSS base score of 7.5 (High) and affects Django versions prior to 4.1.7, prior to 4.0.10, and prior to 3.2.18. Mitigation is available, requiring an upgrade to the patched versions.