Bug#536724: wordpress: CORE-2009-0515 priviledges unchecked and multiple information disclosures

2009-08-09 Thread Moritz Muehlenhoff
On Mon, Jul 13, 2009 at 08:45:03AM +0200, Andrea De Iacovo wrote:
> > this is fixed in upstream version 2.8.1.  please coordinate with the
> > security
> > team to prepare updates for the stable releases.
> 
> 
> Wordpress 2.8.1 is going to be uploaded in sid in the near future.
> 
> As for the stable release I'm going to prepare a patch and submit it so
> security team.

Likewise, what's the status?

Cheers,
Moritz



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org



Bug#536724: wordpress: CORE-2009-0515 priviledges unchecked and multiple information disclosures

2009-07-12 Thread Andrea De Iacovo
> this is fixed in upstream version 2.8.1.  please coordinate with the
> security
> team to prepare updates for the stable releases.


Wordpress 2.8.1 is going to be uploaded in sid in the near future.

As for the stable release I'm going to prepare a patch and submit it so
security team.


Thank you for reporting this.

Cheers.

Andrea De Iacovo


Bug#536724: wordpress: CORE-2009-0515 priviledges unchecked and multiple information disclosures

2009-07-12 Thread Michael S. Gilbert
package: wordpress
version: 2.0.10-1etch3
severity: serious
tags: security

an advisory, CORE-2009-0515, has been issued for wordpress.  there are issues
with unchecked privilidges and many potential information disclosures.  see [1].

this is fixed in upstream version 2.8.1.  please coordinate with the security
team to prepare updates for the stable releases.

[1] 
http://corelabs.coresecurity.com/index.php?module=FrontEndMod&action=view&type=advisory&name=WordPress_Privileges_Unchecked



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org