Public bug reported:

Binary package hint: moin

moin (1.5.8-5.1ubuntu2) hardy; urgency=low

  * Merge with Debian; remaining changes:
    - Suggest python-xml (needed for DocBook rendering). LP: #31728.

 -- Emanuele Gentili <[EMAIL PROTECTED]>  Thu, 21 Feb 2008
02:22:30 +0100

moin (1.5.8-5.1) unstable; urgency=high

  * NMU with maintainer consent, urgency for security updates
  * update upstream patches to moin-1.5 branch revision 856 to fix bugs
    + cross-site scripting vulnerabilities using AttachFile,
      CVE-2008-0781
    + directory traversal in MOIN_ID cookie vulnerability,
      CVE-2008-0782 (Closes: #462984)
    + XSS problem in login, CVE-2008-780

 -- Thomas Viehmann <[EMAIL PROTECTED]>  Tue, 19 Feb 2008 22:38:10 +0100

** Affects: moin (Ubuntu)
     Importance: Medium
     Assignee: Emanuele Gentili (emgent)
         Status: Fix Released

-- 
Please merge moin-1.5.8 (main) from Debian unstable (Security FIX)
https://bugs.launchpad.net/bugs/193869
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to