[ubuntu/oneiric-security] jenkins-winstone 0.9.10-jenkins-25+dfsg-0ubuntu2.2 (Accepted)
James Page
james.page at ubuntu.com
Mon Jan 30 08:03:44 UTC 2012
jenkins-winstone (0.9.10-jenkins-25+dfsg-0ubuntu2.2) oneiric-security; urgency=low
* SECURITY UPDATE: Hash DoS vulnerability in parameter
handling (LP: #914628):
- debian/patches/hash-dos-fix.patch: Cherry picked fix from upstream
to prevent this vulnerability.
- http://www.cloudbees.com/jenkins-advisory/jenkins-security-advisory-2012-01-10.cb
Date: Fri, 27 Jan 2012 16:01:06 +0000
Changed-By: James Page <james.page at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/oneiric/+source/jenkins-winstone/0.9.10-jenkins-25+dfsg-0ubuntu2.2
-------------- next part --------------
Format: 1.8
Date: Fri, 27 Jan 2012 16:01:06 +0000
Source: jenkins-winstone
Binary: libjenkins-winstone-java libjenkins-winstone-java-doc
Architecture: source
Version: 0.9.10-jenkins-25+dfsg-0ubuntu2.2
Distribution: oneiric-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: James Page <james.page at ubuntu.com>
Description:
libjenkins-winstone-java - Jenkins branch of Winstone servlet container
libjenkins-winstone-java-doc - Documentation for libjenkins-winstone-java
Launchpad-Bugs-Fixed: 914628
Changes:
jenkins-winstone (0.9.10-jenkins-25+dfsg-0ubuntu2.2) oneiric-security; urgency=low
.
* SECURITY UPDATE: Hash DoS vulnerability in parameter
handling (LP: #914628):
- debian/patches/hash-dos-fix.patch: Cherry picked fix from upstream
to prevent this vulnerability.
- http://www.cloudbees.com/jenkins-advisory/jenkins-security-advisory-2012-01-10.cb
Checksums-Sha1:
3fe1404eabe556066a6f4ca1028785fe7f30be07 2226 jenkins-winstone_0.9.10-jenkins-25+dfsg-0ubuntu2.2.dsc
32c7f3dcf76ed77192dafac0361b099131277da6 71711 jenkins-winstone_0.9.10-jenkins-25+dfsg-0ubuntu2.2.debian.tar.gz
Checksums-Sha256:
d30a3b499926c6112ddf2cef0ce7a7dd754596b3751402a8df0bd44e4590dfcc 2226 jenkins-winstone_0.9.10-jenkins-25+dfsg-0ubuntu2.2.dsc
ad6562a2c7e943c96529a4673f0e5707ea8a5b26150f80d4e950fb386474cd2f 71711 jenkins-winstone_0.9.10-jenkins-25+dfsg-0ubuntu2.2.debian.tar.gz
Files:
bd9ddf62205456e6230586dc7dd98b9e 2226 java optional jenkins-winstone_0.9.10-jenkins-25+dfsg-0ubuntu2.2.dsc
0a2df6ad61176b67ed86f926c7a32a0d 71711 java optional jenkins-winstone_0.9.10-jenkins-25+dfsg-0ubuntu2.2.debian.tar.gz
Original-Maintainer: Hudson Ubuntu Packagers <hudson-ubuntu at lists.launchpad.net>
More information about the Oneiric-changes
mailing list