========================================================================== Ubuntu Security Notice USN-4479-1 September 01, 2020 python-django vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS Summary: Several security issues were fixed in Django. Software Description: - python-django: High-level Python web development framework Details: It was discovered that Django, when used with Python 3.7 or higher, incorrectly handled directory permissions. A local attacker could possibly use this issue to obtain sensitive information, or escalate permissions. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS: python3-django 2:2.2.12-1ubuntu0.2 In general, a standard system update will make all the necessary changes. References: https://usn.ubuntu.com/4479-1 CVE-2020-24583, CVE-2020-24584 Package Information: https://launchpad.net/ubuntu/+source/python-django/2:2.2.12-1ubuntu0.2