[ubuntu/natty] subversion 1.6.12dfsg-4ubuntu2 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Tue Mar 22 19:10:31 UTC 2011


subversion (1.6.12dfsg-4ubuntu2) natty; urgency=low

  * SECURITY UPDATE: denial of service via request containing lock token
    - debian/patches/CVE-2011-0715.patch: correctly handle locks being
      passed when authn isn't enabled in subversion/mod_dav_svn/repos.c,
      subversion/mod_dav_svn/version.c.
    - CVE-2011-0715

Date: Mon, 21 Mar 2011 13:03:32 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/natty/+source/subversion/1.6.12dfsg-4ubuntu2
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Mon, 21 Mar 2011 13:03:32 -0400
Source: subversion
Binary: subversion libsvn1 libsvn-dev libsvn-doc libapache2-svn python-subversion python-subversion-dbg subversion-tools libsvn-java libsvn-perl libsvn-ruby1.8 libsvn-ruby
Architecture: source
Version: 1.6.12dfsg-4ubuntu2
Distribution: natty
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 libapache2-svn - Subversion server modules for Apache
 libsvn-dev - Development files for Subversion libraries
 libsvn-doc - Developer documentation for libsvn
 libsvn-java - Java bindings for Subversion
 libsvn-perl - Perl bindings for Subversion
 libsvn-ruby - Ruby bindings for Subversion (dummy package)
 libsvn-ruby1.8 - Ruby bindings for Subversion
 libsvn1    - Shared libraries used by Subversion
 python-subversion - Python bindings for Subversion
 python-subversion-dbg - Python bindings for Subversion (debug extension)
 subversion - Advanced version control system
 subversion-tools - Assorted tools related to Subversion
Changes: 
 subversion (1.6.12dfsg-4ubuntu2) natty; urgency=low
 .
   * SECURITY UPDATE: denial of service via request containing lock token
     - debian/patches/CVE-2011-0715.patch: correctly handle locks being
       passed when authn isn't enabled in subversion/mod_dav_svn/repos.c,
       subversion/mod_dav_svn/version.c.
     - CVE-2011-0715
Checksums-Sha1: 
 4f089992d6b269d7fd78a333660282ccc712b0c4 2698 subversion_1.6.12dfsg-4ubuntu2.dsc
 c750342db901636e93520e0196caac5471b36e16 111103 subversion_1.6.12dfsg-4ubuntu2.diff.gz
Checksums-Sha256: 
 daaa03988efee5d7fe4484c352a9539636be17d8559b0eb5d18bc24d5da29356 2698 subversion_1.6.12dfsg-4ubuntu2.dsc
 d7de3dfd6e6b741a6d38552bc92871f5af8e060513f1f3ec40cdf4c39136a79c 111103 subversion_1.6.12dfsg-4ubuntu2.diff.gz
Files: 
 a674f8c5df463ae4ac3bbb10d0f10e85 2698 vcs optional subversion_1.6.12dfsg-4ubuntu2.dsc
 fdd7540b218acef81b6570b27449167e 111103 vcs optional subversion_1.6.12dfsg-4ubuntu2.diff.gz
Original-Maintainer: Peter Samuelson <peter at p12n.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
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=D0kE
-----END PGP SIGNATURE-----


More information about the Natty-changes mailing list