Your message dated Thu, 13 Apr 2006 18:02:12 -0700
with message-id <[EMAIL PROTECTED]>
and subject line Bug#361758: fixed in gallery 1.5.3-1
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--- Begin Message ---
Package: gallery
Severity: important

Gallery is a slick Web-based photo album written using PHP. It is easy
to install, includes a config wizard, and provides users with the
ability to create and maintain their own albums in the album collection
via an intuitive Web interface. Photo management includes automatic
thumbnail creation, image resizing, rotation, ordering, captioning and
more. Albums can have read, write, and caption permissions per
individual authenticated user for an additional level of privacy.


Gallery 1.5.3 is now available for download. This release is primarily a
bug fix release, but it also includes an important security fix. The
fixes: 
      * Security: Not all user input was correctly sanitized for
        JavaScript injection. (Thanks to Aditya Mooley at
        [EMAIL PROTECTED] for reporting this and giving us
        plenty of time to fix it!)
      * HTML is allowed again in various places. (title, caption,
        comments)
      * Weird space around images inside the border that appeared in
        1.5.2 is gone.
      * Proper order of items when uploaded in IE and Opera.
      * Language Mode 2 works again.
      * Several other minor things.

We recommend all Gallery 1 users upgrade to 1.5.3 to keep their Gallery
as secure as possible. Download Gallery 1.5.3 from
http://sf.net/project/showfiles.php?group_id=7130&package_id=7239


--- End Message ---
--- Begin Message ---
Source: gallery
Source-Version: 1.5.3-1

We believe that the bug you reported is fixed in the latest version of
gallery, which is due to be installed in the Debian FTP archive:

gallery_1.5.3-1.diff.gz
  to pool/main/g/gallery/gallery_1.5.3-1.diff.gz
gallery_1.5.3-1.dsc
  to pool/main/g/gallery/gallery_1.5.3-1.dsc
gallery_1.5.3-1_all.deb
  to pool/main/g/gallery/gallery_1.5.3-1_all.deb
gallery_1.5.3.orig.tar.gz
  to pool/main/g/gallery/gallery_1.5.3.orig.tar.gz



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [EMAIL PROTECTED],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Michael C. Schultheiss <[EMAIL PROTECTED]> (supplier of updated gallery package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [EMAIL PROTECTED])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.7
Date: Fri, 14 Apr 2006 00:40:27 +0000
Source: gallery
Binary: gallery
Architecture: source all
Version: 1.5.3-1
Distribution: unstable
Urgency: high
Maintainer: Michael C. Schultheiss <[EMAIL PROTECTED]>
Changed-By: Michael C. Schultheiss <[EMAIL PROTECTED]>
Description: 
 gallery    - a web-based photo album written in php
Closes: 361758
Changes: 
 gallery (1.5.3-1) unstable; urgency=high
 .
   * New upstream release (Closes: #361758)
     + Urgency high due to input sanitization security issue
Files: 
 97fa47de5454ef755a71a538682f8465 581 web optional gallery_1.5.3-1.dsc
 af08e5c5af1712d43b25dae906eb1840 8073216 web optional gallery_1.5.3.orig.tar.gz
 fd39c828feb4f9f4a2e464c6c8cd9734 16227 web optional gallery_1.5.3-1.diff.gz
 b01b622c32a751501ae65a7c2d9a01dc 7920194 web optional gallery_1.5.3-1_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (GNU/Linux)

iD8DBQFEPvIKyJBzD6P54w4RAmbGAJ4quV/mpb6T8c5MpRw0VoXSUIAGMQCfcSwz
Ruo41PQNPjoLSzBrYhg2pXo=
=8mki
-----END PGP SIGNATURE-----


--- End Message ---

Reply via email to