Bug#606657: wordpress: Privilege escalation in posting rights fixed in 3.0.3

2010-12-12 Thread Hideki Yamane
Hi, It seems to be enough to use upstream 3.0.3 tarball, no need to modify patches. Please update your package and request unblock it to release managers. Here is a diff. diff -Nru wordpress-3.0.2/readme.html wordpress-3.0.3/readme.html --- wordpress-3.0.2/readme.html 2010-12-01

Bug#606657: wordpress: Privilege escalation in posting rights fixed in 3.0.3

2010-12-10 Thread Dominic Hargreaves
Package: wordpress Version: 3.0.2-1 Severity: grave Tags: security Justification: user security hole Another week, another security fix in wordpress. From http://codex.wordpress.org/Version_3.0.3: Fixes issues in the XML-RPC remote publishing interface which under certain circumstances allowed