[Bug 185065] Please sync horde3 3.1.6-1 (universe) from Debian unstable (main)

Michael Bienia michael at vorlon.ping.de
Tue Jan 22 12:27:11 GMT 2008


Public bug reported:

Binary package hint: horde3

Please sync horde3 3.1.6-1 (universe) from Debian unstable (main).
Changelog since current hardy version 3.1.4-1:

horde3 (3.1.6-1) unstable; urgency=high

  * New upstream release.
  * This new version has security fixes : privilege escalation in the Horde
    API and XSS vulnerabilities (see CVE-2007-6018 for more informations).
    (Closes: #461131)
  * This new version fixes also translation error in it_IT locale
    (Closes: #459555)
  * Import fix from Horde CVS to correct invalid entities in es_ES
    translantion (thanks to Adrian Santos Marrero <adsaman at gmail.com>)
    (Closes: #461400)
  * Update to standards version 3.7.3, no further required changes.
  * Use now Vcs-* fields in debian/control.
  * Remove empty directories which causes lintian warnings.
  * Bump debhelper compat level to 5.
  * Add Homepage field. 

 -- Gregory Colpart (evolix) <reg at evolix.fr>  Sun, 20 Jan 2008 20:52:59
+0100

horde3 (3.1.4-2) unstable; urgency=low

  [ Gregory Colpart (evolix) ]
  * Added XS-VCS-* fields in debian/control.
  * Typo in previous changelog.

  [ Ola Lundqvist ]
  * Correction of log file problem in configuration file, closes: #452351.
  * Document that the echo line need to be removed as well, closes: #456908.

 -- Ola Lundqvist <opal at debian.org>  Sat, 22 Dec 2007 11:21:40 +0100

** Affects: horde3 (Ubuntu)
     Importance: Wishlist
         Status: Confirmed

** Changed in: horde3 (Ubuntu)
   Importance: Undecided => Wishlist
       Status: New => Confirmed

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2007-6018

-- 
Please sync horde3 3.1.6-1 (universe) from Debian unstable (main)
https://bugs.launchpad.net/bugs/185065
You received this bug notification because you are a member of Ubuntu
Package Archive Administrators, which is a direct subscriber.



More information about the ubuntu-archive mailing list