[Bug 611069] [NEW] Sync mediawiki 1:1.15.5-1 (universe) from Debian unstable (main)

Launchpad Bug Tracker 611069 at bugs.launchpad.net
Thu Jul 29 11:42:21 BST 2010


You have been subscribed to a public bug by StefanPotyra (sistpoty):

Binary package hint: mediawiki

Please sync the new upstream security release from sid to fix #610782
and #610819, plus a further bug that does not have a Launchpad report.

Here is the changelog since the current version:

mediawiki (1:1.15.5-1) unstable; urgency=high

  [ Thorsten Glaser ]
  * debian/patches/suppress_warnings.patch: new, suppress warnings
    about session_start() being called twice also in the PHP error
    log, not just MediaWiki’s, for example run from FusionForge

  [ Jonathan Wiltshire ]
  * New upstream security release:
    - correctly set caching headers to prevent private data leakage
         (closes: #590660, LP: #610782)
    - fix XSS vulnerability in profileinfo.php
         (closes: #590669, LP: #610819)

 -- Jonathan Wiltshire <debian at jwiltshire.org.uk>  Wed, 28 Jul 2010
12:23:04 +0100

** Affects: mediawiki (Ubuntu)
     Importance: Wishlist
         Status: New

-- 
Sync mediawiki 1:1.15.5-1 (universe) from Debian unstable (main)
https://bugs.launchpad.net/bugs/611069
You received this bug notification because you are a member of Ubuntu Sponsors Team, which is a direct subscriber.



More information about the Ubuntu-sponsors mailing list