Your message dated Sat, 01 Jul 2017 21:25:12 +0000
with message-id <[email protected]>
and subject line Bug#865647: fixed in php-horde-ingo 3.2.15-1
has caused the Debian Bug report #865647,
regarding php-horde-ingo: XSS vulnerability in rule search
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
865647: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=865647
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: php-horde-ingo
Version: 3.2.13-1
Severity: normal
Tags: security
Dear maintainer,
thanks for your efforts to update all Horde packages for stretch.
There's one open security problem left. Fix can be found at
https://github.com/horde/horde/commit/6854284a647f360f358b4739e4df65a9cd814664
kind regards,
Philip
-- System Information:
Debian Release: 9.0
APT prefers stable
APT policy: (500, 'stable')
Architecture: amd64 (x86_64)
Kernel: Linux 4.9.0-3-amd64 (SMP w/4 CPU cores)
Locale: LANG=de_DE.utf8, LC_CTYPE=de_DE.utf8 (charmap=UTF-8),
LANGUAGE=de_DE.utf8 (charmap=UTF-8)
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
Versions of packages php-horde-ingo depends on:
ii php-common 1:49
pn php-horde <none>
pn php-horde-auth <none>
pn php-horde-autoloader <none>
pn php-horde-core <none>
pn php-horde-exception <none>
pn php-horde-form <none>
pn php-horde-group <none>
pn php-horde-imap-client <none>
pn php-horde-mime <none>
pn php-horde-perms <none>
pn php-horde-share <none>
pn php-horde-util <none>
pn php-horde-view <none>
ii php7.0-cli [php-cli] 7.0.19-1
Versions of packages php-horde-ingo recommends:
pn php-horde-vfs <none>
pn php-net-sieve <none>
pn php-net-socket <none>
php-horde-ingo suggests no packages.
--- End Message ---
--- Begin Message ---
Source: php-horde-ingo
Source-Version: 3.2.15-1
We believe that the bug you reported is fixed in the latest version of
php-horde-ingo, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Mathieu Parent <[email protected]> (supplier of updated php-horde-ingo package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Sat, 01 Jul 2017 22:16:26 +0200
Source: php-horde-ingo
Binary: php-horde-ingo
Architecture: source all
Version: 3.2.15-1
Distribution: unstable
Urgency: medium
Maintainer: Horde Maintainers <[email protected]>
Changed-By: Mathieu Parent <[email protected]>
Description:
php-horde-ingo - ${phppear:summary}
Closes: 865647
Changes:
php-horde-ingo (3.2.15-1) unstable; urgency=medium
.
* New upstream version 3.2.15
- SECURITY: Fix XSS vulnerability in rule search (Closes: #865647)
Checksums-Sha1:
130157d7c9204a2255d34d3ecb45fd906d06e5f8 2128 php-horde-ingo_3.2.15-1.dsc
82fa79c2c7d4b96a042f696de29fae6b13e40521 1507314
php-horde-ingo_3.2.15.orig.tar.gz
ff5af463296ae33ee4576ad6729cfeb1bdf523d2 4064
php-horde-ingo_3.2.15-1.debian.tar.xz
56c34d94c980396168733de91dca404fcc10c3cf 799136 php-horde-ingo_3.2.15-1_all.deb
86bc883bc2a90f37e9fcc3a6b013c0f167998708 6276
php-horde-ingo_3.2.15-1_amd64.buildinfo
Checksums-Sha256:
1a9cfd71c21e4339031cefe0b2e3ff3fb04030fc97c04dd754d1bed55ef70ffb 2128
php-horde-ingo_3.2.15-1.dsc
c9a6981174daa628bdf84ce8f767a495ec61bd6ff1073dd08ee73fc20991332f 1507314
php-horde-ingo_3.2.15.orig.tar.gz
fc13ca72bec819a7d917d16a65d0c1fc137e86b710411428823ab7e380e215f2 4064
php-horde-ingo_3.2.15-1.debian.tar.xz
3eccb5cf6d002f1e1e091972c8421621d3b7e36c95d705c3fa5522299555d9bc 799136
php-horde-ingo_3.2.15-1_all.deb
09e19d4c7a0ba01da9c43f38ac2a581759a9e548b025e03f62ccb10c5b997966 6276
php-horde-ingo_3.2.15-1_amd64.buildinfo
Files:
44cf8d31895f72293ed17015f83759b8 2128 php extra php-horde-ingo_3.2.15-1.dsc
128166a72f55f3f087e907e2adfeb7fa 1507314 php extra
php-horde-ingo_3.2.15.orig.tar.gz
91d55b4f5397c7b3a36d749cc1068092 4064 php extra
php-horde-ingo_3.2.15-1.debian.tar.xz
9c5565604479e7f2600877403a641d01 799136 php extra
php-horde-ingo_3.2.15-1_all.deb
656a48b4406c6e7e632a545b3bbd9e55 6276 php extra
php-horde-ingo_3.2.15-1_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----
iQJHBAEBCAAxFiEEqIGbPTP9weQZ135HrgOYBGZoH6UFAllYBAUTHHNhdGhpZXVA
ZGViaWFuLm9yZwAKCRCuA5gEZmgfpXKNEACn8U3t0d/KqiE810Va2Yrs07VlmEPC
S4LdYf/LhiQnaEQTWmXVnnQe0PGHD9I+ApFc4725vvnInInEQLCWbUlHYgwbfYNc
qZ8wnTRDI83LTpZtkC08uawmoctNPg7s0u8pEaEffFQc8V9y+WH6JKK6GB63uYBb
wtp2RjDA/aPxpP3gr9ntudhRwBt7N3FSXl8eClfyLpZU2EQbsQjiCQ/6yIMZPL73
snajbFAp1yJZfT7PHdU/ToH9T++VpyweBsYGEDyJJNOz2A9RQGHLh4ag5bS26JmH
UFnxAgUc47Fk2eIYSe5lX6SAOA7vilohgKzraPzDNRMhwgD+FD8+Pdbr84xvly91
cLm7E7o+ahbXKVBwyoCwVwN9HLXefmL6yubNVjWXQBGBdMqVRimpa7ivbXjYoNyB
VR4NtiK6Oon+q2rhRUOEzpxajnYvCRJsIuJGEw2j1o1f15XHSo3Qd33hb+ipsDFP
xVOeioaDSetAbmfiFIHzy98QyBiESEDOKACPhtgQpGTy9LnIAWdjjThrqyweobvQ
0W44sqwYMdFOMieFtWkOUq2gOeYGG9gxiqfzZiyRTkSEvMIuiEt4gXGZhMH6xJND
CT1OW1fr6dHPx+/+FGm6WyiyXVEsfgneIBDS2Fz2rx4DW1Tiq9FROHywdODAFM7T
Lm7sISNW/6VNew==
=ujg3
-----END PGP SIGNATURE-----
--- End Message ---