Loggerhead 1.18.1 released
Russel Winder
russel at russel.org.uk
Fri Mar 25 17:12:40 UTC 2011
On Fri, 2011-03-25 at 17:00 +0000, Russel Winder wrote:
> On Fri, 2011-03-25 at 10:53 +1100, William Grant wrote:
> > Loggerhead 1.18.1 brings security and stability fixes. Filenames are now
> > correctly escaped in revision views, removing a cross-site scripting
> > vector (CVE-2011-0728). A crash in start-loggerhead when log rotation
> > was enabled has also been fixed.
> >
> > We strongly recommend that all users upgrade to 1.18.1 due to the
> > included security fix.
> >
> > You can download 1.18.1 at https://launchpad.net/loggerhead/+download
>
> Will you install this to the Bazaar PPA as happened with 1.18?
It seems it has already made it to Debian Sid, so it will arrive in
Debian Testing shortly :-)
--
Russel.
=============================================================================
Dr Russel Winder t: +44 20 7585 2200 voip: sip:russel.winder at ekiga.net
41 Buckmaster Road m: +44 7770 465 077 xmpp: russel at russel.org.uk
London SW11 1EN, UK w: www.russel.org.uk skype: russel_winder
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 198 bytes
Desc: This is a digitally signed message part
URL: <https://lists.ubuntu.com/archives/bazaar/attachments/20110325/022ca341/attachment.pgp>
More information about the bazaar
mailing list