[Bug 1303484] Re: Sync libcgi-application-perl 4.50-2 (universe) from Debian unstable (main)

Logan Rosen loganrosen at gmail.com
Mon Apr 7 03:40:53 UTC 2014


Looking into this.

** Changed in: libcgi-application-perl (Ubuntu)
       Status: New => In Progress

** Changed in: libcgi-application-perl (Ubuntu)
     Assignee: (unassigned) => Logan Rosen (logan)

** Changed in: libcgi-application-perl (Ubuntu)
       Status: In Progress => Fix Released

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2013-7329

-- 
You received this bug notification because you are a member of Ubuntu
Sponsors Team, which is subscribed to the bug report.
https://bugs.launchpad.net/bugs/1303484

Title:
  Sync libcgi-application-perl 4.50-2 (universe) from Debian unstable
  (main)

Status in “libcgi-application-perl” package in Ubuntu:
  Fix Released

Bug description:
  Please sync libcgi-application-perl 4.50-2 (universe) from Debian
  unstable (main)

  Changelog entries since current trusty version 4.50-1:

  libcgi-application-perl (4.50-2) unstable; urgency=low

    * Team upload.

    [ Ansgar Burchardt ]
    * debian/control: Convert Vcs-* fields to Git.

    [ gregor herrmann ]
    * debian/control: update {versioned,alternative} (build) dependencies.

    [ Salvatore Bonaccorso ]
    * Change search.cpan.org based URIs to metacpan.org based URIs

    [ Axel Beckert ]
    * debian/copyright: migrate pre-1.0 format to 1.0 using "cme fix dpkg-
      copyright"

    [ gregor herrmann ]
    * debian/control: remove Nicholas Bamber from Uploaders on request of
      the MIA team.
    * Strip trailing slash from metacpan URLs.

    [ Salvatore Bonaccorso ]
    * Add CVE-2013-7329.patch patch.
      CVE-2013-7329: In certain cases, CGI::Application would unexpectedly
      dump a complete set of web query data and server environment information
      as an error page. This could allow unintended disclosure of sensitive
      information. (Closes: #739505)
    * Add back Build-Depends-Indep and Depends on libclass-isa-perl

    [ gregor herrmann ]
    * Drop unversioned perl from Depends.
    * Declare compliance with Debian Policy 3.9.5.

   -- gregor herrmann <gregoa at debian.org>  Fri, 04 Apr 2014 07:55:43
  +0200

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libcgi-application-perl/+bug/1303484/+subscriptions



More information about the Ubuntu-sponsors mailing list