Yes. It's a major vulnerability discovered in the past few months that significantly weakens the crypto.
Website Describing the attack: http://breachattack.com/
Django Blog Post: https://www.djangoproject.com/weblog/2013/aug/06/breach-and-...