[Bug 301340] [NEW] Please merge wordpress 2.5.1-10 (universe) from Debian (unstable)

Launchpad Bug Tracker 301340 at bugs.launchpad.net
Sun Nov 23 16:15:18 GMT 2008


You have been subscribed to a public bug by Stefan Lesicnik (stefanlsd):

Binary package hint: wordpress

wordpress (2.5.1-10ubuntu1) jaunty; urgency=low

  * Merge from debian unstable, remaining changes:
   + debian/apache.conf:
    - Changed to use /var/www instead of /srv/www for virtual webroot.
   + debian/setup-mysql:
    - Changed to use /var/www instead of /srv/www.
  * debian/patches/010_remove_update_notice.patch:
    - Reworked original patch to remove Wordpress upgrade notify
      in admin dashboard (Rolf Leggewie) (LP: #227547)
  * Include patch for CVE2008-3747 (LP: #269301)

 -- Stefan Lesicnik <stefan at lsd.co.za>  Sun, 23 Nov 2008 18:12:33 +0200

wordpress (2.5.1-10) unstable; urgency=high

  * 007CVE2008-2392.patch modified.
    Now users chan dinamically choose to enable unrestricted upload for admins.
  * 010_REQUEST.patch added.
    This patch is only a workaround for #504771. Now cookies are properly
    checked; if something malicious is found wordpress stops any other execution
    until cookies are not cleaned.

 -- Andrea De Iacovo <andrea.de.iacovo at gmail.com>  Thu, 06 Nov 2008
10:12:35 +0100

wordpress (2.5.1-9ubuntu1) jaunty; urgency=low

  * Merge from debian unstable, remaining changes:
   + debian/apache.conf:
    - Changed to use /var/www instead of /srv/www for virtual webroot.
   + debian/setup-mysql:
    - Changed to use /var/www instead of /srv/www.
    - modified to fix permissions on /var/www
   + debian/patches/010_remove_update_notice.patch:
    - Removed Wordpress upgrade notify in admin dashboard.

 -- Emanuele Gentili <emgent at ubuntu.com>  Fri, 07 Nov 2008 05:44:33
+0100

** Affects: wordpress (Ubuntu)
     Importance: Undecided
         Status: New

-- 
Please merge wordpress 2.5.1-10 (universe) from Debian (unstable)
https://bugs.edge.launchpad.net/bugs/301340
You received this bug notification because you are a member of Ubuntu Sponsors for universe, which is a direct subscriber.



More information about the Ubuntu-universe-sponsors mailing list