[ubuntu/precise-security] horizon_2012.1-0ubuntu8.1_i386_translations.tar.gz, horizon 2012.1-0ubuntu8.1 (Accepted)

Jamie Strandboge jamie at ubuntu.com
Mon May 7 14:03:26 UTC 2012


horizon (2012.1-0ubuntu8.1) precise-security; urgency=low

  * SECURITY UPDATE: fix XSS when refreshing logs
    - debian/patches/CVE-2012-2094.patch: interpret logs as text
    - CVE-2012-2094
  * SECURITY UPDATE: fix session fixation and reuse
    - debian/patches/CVE-2012-2144.patch: properly verify existing session and
      also log user out on error
    - CVE-2012-2144

Date: Wed, 02 May 2012 08:19:13 -0500
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Chuck Short <zulcss at ubuntu.com>
https://launchpad.net/ubuntu/precise/+source/horizon/2012.1-0ubuntu8.1
-------------- next part --------------
Format: 1.8
Date: Wed, 02 May 2012 08:19:13 -0500
Source: horizon
Binary: python-django-horizon openstack-dashboard python-django-openstack openstack-dashboard-ubuntu-theme
Architecture: source
Version: 2012.1-0ubuntu8.1
Distribution: precise-security
Urgency: low
Maintainer: Chuck Short <zulcss at ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description: 
 openstack-dashboard - django web interface to Openstack
 openstack-dashboard-ubuntu-theme - Ubuntu theme for the Openstack dashboard
 python-django-horizon - Django module providing web based interaction with OpenStack
 python-django-openstack - dummy transitonal package from python-django-openstack to python-
Changes: 
 horizon (2012.1-0ubuntu8.1) precise-security; urgency=low
 .
   * SECURITY UPDATE: fix XSS when refreshing logs
     - debian/patches/CVE-2012-2094.patch: interpret logs as text
     - CVE-2012-2094
   * SECURITY UPDATE: fix session fixation and reuse
     - debian/patches/CVE-2012-2144.patch: properly verify existing session and
       also log user out on error
     - CVE-2012-2144
Checksums-Sha1: 
 63a3f7aa9302007b1da988175611eb1d43148c12 2329 horizon_2012.1-0ubuntu8.1.dsc
 95ed09e99fbb9a38776f22cc7ce72920878c2fe9 27586 horizon_2012.1-0ubuntu8.1.debian.tar.gz
Checksums-Sha256: 
 076284447ddae87981a9946ffe1a81d2f1b3537492ede42d18616f1351a75b70 2329 horizon_2012.1-0ubuntu8.1.dsc
 341987cc8765bf260ac44964bbfcbd14d7e38c0e708c5a526f1268c8c0fcc5a9 27586 horizon_2012.1-0ubuntu8.1.debian.tar.gz
Files: 
 e280176f3126a12f5c1b1d1257dceb31 2329 net extra horizon_2012.1-0ubuntu8.1.dsc
 f82dd7f88cb46d91cfd15d932b723145 27586 net extra horizon_2012.1-0ubuntu8.1.debian.tar.gz


More information about the Precise-changes mailing list