[ubuntu/precise-security] horizon_2012.1-0ubuntu8.1_i386_translations.tar.gz, horizon 2012.1-0ubuntu8.1 (Accepted)
Jamie Strandboge
jamie at ubuntu.com
Mon May 7 14:03:26 UTC 2012
horizon (2012.1-0ubuntu8.1) precise-security; urgency=low
* SECURITY UPDATE: fix XSS when refreshing logs
- debian/patches/CVE-2012-2094.patch: interpret logs as text
- CVE-2012-2094
* SECURITY UPDATE: fix session fixation and reuse
- debian/patches/CVE-2012-2144.patch: properly verify existing session and
also log user out on error
- CVE-2012-2144
Date: Wed, 02 May 2012 08:19:13 -0500
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Chuck Short <zulcss at ubuntu.com>
https://launchpad.net/ubuntu/precise/+source/horizon/2012.1-0ubuntu8.1
-------------- next part --------------
Format: 1.8
Date: Wed, 02 May 2012 08:19:13 -0500
Source: horizon
Binary: python-django-horizon openstack-dashboard python-django-openstack openstack-dashboard-ubuntu-theme
Architecture: source
Version: 2012.1-0ubuntu8.1
Distribution: precise-security
Urgency: low
Maintainer: Chuck Short <zulcss at ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description:
openstack-dashboard - django web interface to Openstack
openstack-dashboard-ubuntu-theme - Ubuntu theme for the Openstack dashboard
python-django-horizon - Django module providing web based interaction with OpenStack
python-django-openstack - dummy transitonal package from python-django-openstack to python-
Changes:
horizon (2012.1-0ubuntu8.1) precise-security; urgency=low
.
* SECURITY UPDATE: fix XSS when refreshing logs
- debian/patches/CVE-2012-2094.patch: interpret logs as text
- CVE-2012-2094
* SECURITY UPDATE: fix session fixation and reuse
- debian/patches/CVE-2012-2144.patch: properly verify existing session and
also log user out on error
- CVE-2012-2144
Checksums-Sha1:
63a3f7aa9302007b1da988175611eb1d43148c12 2329 horizon_2012.1-0ubuntu8.1.dsc
95ed09e99fbb9a38776f22cc7ce72920878c2fe9 27586 horizon_2012.1-0ubuntu8.1.debian.tar.gz
Checksums-Sha256:
076284447ddae87981a9946ffe1a81d2f1b3537492ede42d18616f1351a75b70 2329 horizon_2012.1-0ubuntu8.1.dsc
341987cc8765bf260ac44964bbfcbd14d7e38c0e708c5a526f1268c8c0fcc5a9 27586 horizon_2012.1-0ubuntu8.1.debian.tar.gz
Files:
e280176f3126a12f5c1b1d1257dceb31 2329 net extra horizon_2012.1-0ubuntu8.1.dsc
f82dd7f88cb46d91cfd15d932b723145 27586 net extra horizon_2012.1-0ubuntu8.1.debian.tar.gz
More information about the Precise-changes
mailing list