[Bug 729700] Re: SQL injections in DTC

2011-03-22 Thread Steve Beattie
Thomas, I went ahead and tweaked the format of the changelog and adjusted the maverick and lucid versions (as well as the release distro) to be more consistent with our style for security updates, and have pushed them to the respective security pockets. Thanks! -- You received this bug

[Bug 729700] Re: SQL injections in DTC

2011-03-22 Thread Steve Beattie
Bah, forgot to add the the launchpad bug number to the changelog; manually closing the tasks. ** Changed in: dtc (Ubuntu Lucid) Status: In Progress = Fix Released ** Changed in: dtc (Ubuntu Maverick) Status: In Progress = Fix Released -- You received this bug notification because

[Bug 729700] Re: SQL injections in DTC

2011-03-21 Thread Steve Beattie
Thomas, thanks, I'll review and push these out. ** Changed in: dtc (Ubuntu Karmic) Assignee: (unassigned) = Steve Beattie (sbeattie) ** Changed in: dtc (Ubuntu Lucid) Assignee: (unassigned) = Steve Beattie (sbeattie) ** Changed in: dtc (Ubuntu Maverick) Assignee: (unassigned) =

[Bug 729700] Re: SQL injections in DTC

2011-03-21 Thread Steve Beattie
Karmic was fixed with the 0.29.17-1+lenny1build0.9.10.1 security-fake- sync. ** Changed in: dtc (Ubuntu Karmic) Status: In Progress = Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is a direct subscriber.

[Bug 729700] Re: SQL injections in DTC

2011-03-19 Thread Thomas Goirand
Hi, Patched versions have been made. Here's the details: Hardy: http://ftparchive.gplhost.com/pub/dtc/ubuntu-fixes/hardy/dtc_0.25.3-2ubuntu2.dsc karmic: http://ftp.debian.org/debian/pool/main/d/dtc/dtc_0.29.17-1+lenny1.dsc (directly from Debian) lucid:

[Bug 729700] Re: SQL injections in DTC

2011-03-11 Thread Jamie Strandboge
[Updating] dtc (0.32.5-1 [Ubuntu] 0.32.10-1 [Debian]) * Trying to add dtc... 2011-03-11 16:55:06 INFO - dtc_0.32.10.orig.tar.gz: downloading from http://ftp.debian.org/debian/ 2011-03-11 16:55:10 INFO - dtc_0.32.10-1.diff.gz: downloading from http://ftp.debian.org/debian/ 2011-03-11

[Bug 729700] Re: SQL injections in DTC

2011-03-08 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest posting a debdiff for this issue. When a debdiff is available, members of the security