This bug was fixed in the package drupal7 - 7.44-1ubuntu1~16.04.0
---------------
drupal7 (7.44-1ubuntu1~16.04.0) xenial; urgency=medium
* Backport a version of drupal7 to Ubuntu 16.04 LTS that is
installable with php7 (LP: #1582340)
drupal7 (7.44-1ubuntu1) yakkety; urgency=medium
* Depend on php-xml (LP: #1595788)
drupal7 (7.44-1) unstable; urgency=high
* New upstream version
* Fixes a security vulnerability (SA-CORE-2016-002): Privilege
escalation (within the webapp users realm)
drupal7 (7.43-3) unstable; urgency=medium
* Moved the farbstatic sources from debian/missing-sources
todebian/missing-sources/misc, to keep lintian happy
* The right name for one of our conditional dependencies is no longer
php-sqlite, but php-sqlite3. Thanks to Nish Aravamudan for pointing
this out!
drupal7 (7.43-2) unstable; urgency=medium
* Update dependencies to use PHP 7 instead of 5 (Closes: #821482)
* Updated debian/watch to work reliably
* Standards-version 3.9.6.0→3.9.8 (no changes needed)
drupal7 (7.43-1) unstable; urgency=high
* New upstream version
* Fixes several security vulnerabilities (SA-CORE-2016-001): File
upload access bypass and DoS, brute force amplification attack via
XML-RPC, open redirect via path manipulation, reflected file
download, wrong modes set on some user accounts setting saves,
information disclosure of email addresses
* Several non-security bugfixes from 7.42 included
* Fix typo in README.Debian
* Add several needed lintian overrides
-- Jeremy Bicha <[email protected]> Fri, 24 Jun 2016 13:29:56 -0400
** Changed in: drupal7 (Ubuntu Xenial)
Status: Fix Committed => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1582340
Title:
[SRU] Sync drupal7 7.43-3 (universe) from Debian unstable (main)
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/drupal7/+bug/1582340/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs