Accepted gforge 3.1-31ubuntu0.1 (source)

Ubuntu Installer archive at ubuntu.com
Mon Sep 17 17:55:38 BST 2007


Accepted:
 OK: gforge_3.1.orig.tar.gz
 OK: gforge_3.1-31ubuntu0.1.diff.gz
 OK: gforge_3.1-31ubuntu0.1.dsc
     -> Component: universe Section: devel

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.7
Date: Sat, 15 Sep 2007 13:40:12 -0700
Source: gforge
Binary: gforge-lists-mailman gforge-db-postgresql sourceforge gforge-mta-postfix gforge-sourceforge-transition gforge-shell-ldap gforge gforge-common gforge-web-apache gforge-mta-exim gforge-cvs gforge-ftp-proftpd gforge-mta-exim4 gforge-dns-bind9 gforge-ldap-openldap
Architecture: source
Version: 3.1-31ubuntu0.1
Distribution: dapper-security
Urgency: low
Maintainer: Roland Mas <lolando at debian.org>
Changed-By: Kees Cook <kees at ubuntu.com>
Description: 
 gforge     - Collaborative development tool - meta-package
 gforge-common - Collaborative development tool - shared files
 gforge-cvs - Collaborative development tool - CVS management
 gforge-db-postgresql - Collaborative development tool - database (using PostgreSQL)
 gforge-dns-bind9 - Collaborative development tool - DNS management (using Bind9)
 gforge-ftp-proftpd - Collaborative development tool - FTP management (using ProFTPd)
 gforge-ldap-openldap - Collaborative development tool - LDAP directory (using OpenLDAP)
 gforge-lists-mailman - Collaborative development tool - mailing-lists (using Mailman)
 gforge-mta-exim - Collaborative development tool - mail tools (using Exim)
 gforge-mta-exim4 - Collaborative development tool - mail tools (using Exim 4)
 gforge-mta-postfix - Collaborative development tool - mail tools (using Postfix)
 gforge-shell-ldap - Collaborative development tool - shell accounts (using LDAP)
 gforge-sourceforge-transition - Sourceforge to Gforge data transition
 gforge-web-apache - Collaborative development tool - web part (using Apache)
 sourceforge - Empty package to help with Sourceforge to Gforge transition
Changes: 
 gforge (3.1-31ubuntu0.1) dapper-security; urgency=low
 .
   * SECURITY UPDATE: SQL injection, XSS vulnerabilities.
   * Patched inline from Debian sarge2:
     - Fixed SQL injection vulnerability due to insufficient input
       sanitizing (CVE-2007-3913).
     - Backported XSS vulnerabilities (CVE-2005-2430) fix from the upstream
       4.5 to 4.5.0.1 diff.
Files: 
 b420785a93eaea6beb80cbb7da479b95 874 devel optional gforge_3.1-31ubuntu0.1.dsc
 d62366271b7a8c9a63ad07fd593ced25 295730 devel optional gforge_3.1-31ubuntu0.1.diff.gz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFG7Eb/H/9LqRcGPm0RAtAqAJ9PwheFr/QVJbxvGvf+b+6vPBnLFwCfWyx1
DN7jzJ7/VdoTJLEgcu1kGyI=
=BEfe
-----END PGP SIGNATURE-----





More information about the dapper-changes mailing list