Accepted awstats 6.5-2ubuntu1 (source)
Kees Cook
kees at ubuntu.com
Mon Oct 9 15:45:09 BST 2006
Accepted:
OK: awstats_6.5-2ubuntu1.dsc
-> Component: main Section: web
OK: awstats_6.5-2ubuntu1.diff.gz
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Fri, 6 Oct 2006 14:29:13 -0700
Source: awstats
Binary: awstats
Architecture: source
Version: 6.5-2ubuntu1
Distribution: edgy
Urgency: low
Maintainer: Debian AWStats Team <pkg-awstats-devel at lists.alioth.debian.org>
Changed-By: Kees Cook <kees at ubuntu.com>
Description:
awstats - powerful and featureful web server log analyzer
Changes:
awstats (6.5-2ubuntu1) edgy; urgency=low
.
* SECURITY UPDATE: Fix path exposure on error.
* Add 'debian/patches/1004_backport_6.6_xss-fixes.patch' to correct URL
decoding and adjust error message reports. Backported from upstream.
* References
CVE-2006-3682
http://awstats.cvs.sourceforge.net/awstats/awstats/wwwroot/cgi-bin/awstats.pl?r1=1.867&r2=1.871
Files:
f426dc302ec8d4b105c91d8e1531318c 773 web optional awstats_6.5-2ubuntu1.dsc
717693bedc4edb3a4dfcbe3d68cd3f72 19859 web optional awstats_6.5-2ubuntu1.diff.gz
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (GNU/Linux)
iD8DBQFFKmCFDecnbV4Fd/IRAtHQAKCgjDCN7fkrMYajP6vc+/48G+djegCg/lGG
x54POLs9Ae2slp8N2HhLnTg=
=+QD7
-----END PGP SIGNATURE-----
More information about the edgy-changes
mailing list