[ubuntu/hardy-security] mediawiki_1.11.2-2ubuntu0.4_sparc_translations.tar.gz (delayed), mediawiki_1.11.2-2ubuntu0.4_i386_translations.tar.gz, mediawiki_1.11.2-2ubuntu0.4_hppa_translations.tar.gz, mediawiki_1.11.2-2ubuntu0.4_amd64_translations.tar.gz, mediawiki, mediawiki_1.11.2-2ubuntu0.4_powerpc_translations.tar.gz, mediawiki_1.11.2-2ubuntu0.4_ia64_translations.tar.gz, mediawiki_1.11.2-2ubuntu0.4_lpia_translations.tar.gz 1:1.11.2-2ubuntu0.4 (Accepted)

Ubuntu Installer archive at ubuntu.com
Tue Mar 16 22:03:44 GMT 2010


mediawiki (1:1.11.2-2ubuntu0.4) hardy-security; urgency=low

  * SECURITY UPDATE: CSS validation issue allowing external images to be included
    into wikis where that is disallowed by conf. (LP: #537974)
    - debian/patches/CSS-no-CVE_rev-63429.patch
    - patch based on upstream SVN rev. 63429
    - http://lists.wikimedia.org/pipermail/mediawiki-announce/2010-March/000088.html
  * Fix regression in CVE-2009-0737.patch, where the database-specific options
    will not be shown by default when installing mediawiki. (LP: #539697)

Date: Tue, 16 Mar 2010 18:43:48 +0100
Changed-By: Andreas Wenning <awen at awen.dk>
Maintainer: Ubuntu MOTU Developers <ubuntu-motu at lists.ubuntu.com>
https://launchpad.net/ubuntu/hardy/+source/mediawiki/1:1.11.2-2ubuntu0.4
-------------- next part --------------
Format: 1.7
Date: Tue, 16 Mar 2010 18:43:48 +0100
Source: mediawiki
Binary: mediawiki mediawiki-math
Architecture: source
Version: 1:1.11.2-2ubuntu0.4
Distribution: hardy-security
Urgency: low
Maintainer: Ubuntu MOTU Developers <ubuntu-motu at lists.ubuntu.com>
Changed-By: Andreas Wenning <awen at awen.dk>
Description: 
 mediawiki  - website engine for collaborative work
 mediawiki-math - math rendering plugin for MediaWiki
Launchpad-Bugs-Fixed: 537974 539697
Changes: 
 mediawiki (1:1.11.2-2ubuntu0.4) hardy-security; urgency=low
 .
   * SECURITY UPDATE: CSS validation issue allowing external images to be included
     into wikis where that is disallowed by conf. (LP: #537974)
     - debian/patches/CSS-no-CVE_rev-63429.patch
     - patch based on upstream SVN rev. 63429
     - http://lists.wikimedia.org/pipermail/mediawiki-announce/2010-March/000088.html
   * Fix regression in CVE-2009-0737.patch, where the database-specific options
     will not be shown by default when installing mediawiki. (LP: #539697)
Files: 
 0488d755297c4af82360507affb19c35 934 web optional mediawiki_1.11.2-2ubuntu0.4.dsc
 e83ebd88b879d35f1bc79af05cb7c0cf 60261 web optional mediawiki_1.11.2-2ubuntu0.4.diff.gz
Original-Maintainer: Mediawiki Maintenance Team <pkg-mediawiki-devel at lists.alioth.debian.org>


More information about the Hardy-changes mailing list