[ubuntu/lucid-security] paste, paste (delayed) 1.7.2-4ubuntu1.2 (Accepted)

Ubuntu Installer archive at ubuntu.com
Tue Dec 7 19:04:12 GMT 2010


paste (1.7.2-4ubuntu1.2) lucid-security; urgency=low

  * SECURITY UPDATE: Multiple cross-site scripting vulnerabilities
    - debian/patches/CVE-2010-2477.dpatch: properly quote stuff in
      paste/httpexceptions.py, paste/urlmap.py, paste/util/quoting.py. Add
      tests to tests/test_urlmap.py, tests/test_urlparser.py.
    - CVE-2010-2477

Date: Mon, 06 Dec 2010 14:40:41 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu MOTU Developers <ubuntu-motu at lists.ubuntu.com>
https://launchpad.net/ubuntu/lucid/+source/paste/1.7.2-4ubuntu1.2
-------------- next part --------------
Format: 1.8
Date: Mon, 06 Dec 2010 14:40:41 -0500
Source: paste
Binary: python-paste
Architecture: source
Version: 1.7.2-4ubuntu1.2
Distribution: lucid-security
Urgency: low
Maintainer: Ubuntu MOTU Developers <ubuntu-motu at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 python-paste - tools for using a Web Server Gateway Interface stack
Changes: 
 paste (1.7.2-4ubuntu1.2) lucid-security; urgency=low
 .
   * SECURITY UPDATE: Multiple cross-site scripting vulnerabilities
     - debian/patches/CVE-2010-2477.dpatch: properly quote stuff in
       paste/httpexceptions.py, paste/urlmap.py, paste/util/quoting.py. Add
       tests to tests/test_urlmap.py, tests/test_urlparser.py.
     - CVE-2010-2477
Checksums-Sha1: 
 c3c21959cd16e848d68513192394724f8b940255 2103 paste_1.7.2-4ubuntu1.2.dsc
 6397ba76c9202d0a6614c882117a52d824ad1ccd 8082 paste_1.7.2-4ubuntu1.2.diff.gz
Checksums-Sha256: 
 f6a61d7eef284b9fbfe0c030ddbfc8396ea9e9610c1e18a190971cbd3a3fa85f 2103 paste_1.7.2-4ubuntu1.2.dsc
 0a8842c7aff504c595c5950a9cad0a73cb27e81183c1febdcc5f83ad18e05134 8082 paste_1.7.2-4ubuntu1.2.diff.gz
Files: 
 d4acd77a7f7d4461c11bc096b9434299 2103 python optional paste_1.7.2-4ubuntu1.2.dsc
 9e724e29311afd6ce7933ac42da6f11f 8082 python optional paste_1.7.2-4ubuntu1.2.diff.gz
Original-Maintainer: Piotr Ożarowski <piotr at debian.org>


More information about the Lucid-changes mailing list