Back to bug 2218004

Who When What Removed Added
Guilherme de Almeida Suckevicz 2023-06-27 19:24:07 UTC CC security-response-team
Guilherme de Almeida Suckevicz 2023-06-27 20:10:26 UTC CC adudiak, amctagga, aoconnor, apevec, bniver, dhughes, eglynn, flucifre, gmeno, jjoyce, kshier, lhh, mbenjamin, mburns, mgarciac, mhackett, pgrist, sostapov, stcannon, tfister, vereddy
Guilherme de Almeida Suckevicz 2023-06-28 02:43:43 UTC CC bbuckingham, bcourt, ehelms, gtanzill, jsherril, lzap, mhulan, mminar, myarboro, nmoumoul, orabin, pcreech, rbiba, rchan, sskracic
Guilherme de Almeida Suckevicz 2023-06-28 02:44:36 UTC Blocks 2218003
Guilherme de Almeida Suckevicz 2023-06-28 14:26:26 UTC Depends On 2218254, 2218263, 2218255, 2218256, 2218258, 2218251, 2218269, 2218262, 2218268, 2218252, 2218259, 2218261, 2218264, 2218266, 2218257, 2218260, 2218272, 2218270, 2218253, 2218265
Guilherme de Almeida Suckevicz 2023-06-28 14:28:20 UTC Comment 0 updated
Guilherme de Almeida Suckevicz 2023-06-28 14:37:25 UTC CC kaycoth, nweather
Guilherme de Almeida Suckevicz 2023-06-28 14:39:42 UTC CC acrosby, caswilli, jmitchel, jtanner
Red Hat Bugzilla 2023-07-03 04:50:17 UTC CC security-response-team
Guilherme de Almeida Suckevicz 2023-07-03 12:08:32 UTC Deadline 2023-07-03
CC rhos-maint
Summary EMBARGOED TRIAGE-CVE-2023-36053 python-django: Potential regular expression denial of service vulnerability in EmailValidator/URLValidator TRIAGE-CVE-2023-36053 python-django: Potential regular expression denial of service vulnerability in EmailValidator/URLValidator
Group security, qe_staff
Guilherme de Almeida Suckevicz 2023-07-03 12:09:16 UTC Depends On 2219383, 2219381, 2219382, 2219379, 2219380
Red Hat Bugzilla 2023-07-07 08:30:38 UTC Fixed In Version python-django 4.2.3, python-django 4.1.10, python-django 3.2.20
Doc Text A regular expression denial of service vulnerability has been found in Django. Email and URL validators are vulnerable when processing a very large number of domain name labels of emails and URLs.
Assignee security-response-team nobody
CC security-response-team
Red Hat Bugzilla 2023-07-08 04:16:52 UTC CC acrosby
Guilherme de Almeida Suckevicz 2023-08-07 19:02:15 UTC Summary TRIAGE-CVE-2023-36053 python-django: Potential regular expression denial of service vulnerability in EmailValidator/URLValidator CVE-2023-36053 python-django: Potential regular expression denial of service vulnerability in EmailValidator/URLValidator
Alias TRIAGE-CVE-2023-36053 CVE-2023-36053
RaTasha Tillery-Smith 2023-08-07 19:12:45 UTC Doc Text A regular expression denial of service vulnerability has been found in Django. Email and URL validators are vulnerable when processing a very large number of domain name labels of emails and URLs. A regular expression denial of service vulnerability has been found in Django. Email and URL validators are vulnerable to this flaw when processing a very large number of domain name labels of emails and URLs.

Back to bug 2218004