[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Accepted request-tracker3.8 3.8.8-7+squeeze7 (source all)



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Sun, 19 May 2013 15:10:58 +0100
Source: request-tracker3.8
Binary: request-tracker3.8 rt3.8-clients rt3.8-apache2 rt3.8-db-postgresql rt3.8-db-mysql rt3.8-db-sqlite
Architecture: source all
Version: 3.8.8-7+squeeze7
Distribution: oldstable-security
Urgency: high
Maintainer: Debian Request Tracker Group <pkg-request-tracker-maintainers@lists.alioth.debian.org>
Changed-By: Dominic Hargreaves <dom@earth.li>
Description: 
 request-tracker3.8 - extensible trouble-ticket tracking system
 rt3.8-apache2 - Apache 2 specific files for request-tracker3.8
 rt3.8-clients - mail gateway and command-line interface to request-tracker3.8
 rt3.8-db-mysql - MySQL database backend for request-tracker3.8
 rt3.8-db-postgresql - PostgreSQL database backend for request-tracker3.8
 rt3.8-db-sqlite - SQLite database backend for request-tracker3.8
Changes: 
 request-tracker3.8 (3.8.8-7+squeeze7) oldstable-security; urgency=high
 .
   * Multiple security fixes for:
     - Semi-predictable temporary file names (CVE-2013-3368)
     - Arbitrary Mason component execution (CVE-2013-3369)
     - Direct execution of private callback components (CVE-2013-3370)
     - XSS via attachment filenames and URLs in messages (CVE-2013-3371)
     - XSS via Content-Disposition header (CVE-2013-3372)
     - MIME header injection (CVE-2013-3373)
     - Limited session reuse when using Apache::Session::File (CVE-2013-3374)
   * Include database upgrade (dbconfig-common and NEWS)
Checksums-Sha1: 
 69a0316fae9865e8a2af9392a7c69887ecb0271e 1635 request-tracker3.8_3.8.8-7+squeeze7.dsc
 8b210d68e2c01ce0205b9c46177c4bda8c3f525a 128070 request-tracker3.8_3.8.8-7+squeeze7.diff.gz
 183b5ef6e5240a536797090b062e10b722f28ab1 4670230 request-tracker3.8_3.8.8-7+squeeze7_all.deb
 c692b7fa2e75b1e9525c93f8a364b1147c5cc862 48648 rt3.8-clients_3.8.8-7+squeeze7_all.deb
 2a9074c1cbf94aeb9b39ae80655d13e7836acac2 13662 rt3.8-apache2_3.8.8-7+squeeze7_all.deb
 ea7804a494b2259a881eef63305c6f0f1f70109d 12328 rt3.8-db-postgresql_3.8.8-7+squeeze7_all.deb
 f618ee6d62576f1210ce89f93f020b66b6ef8ca7 12326 rt3.8-db-mysql_3.8.8-7+squeeze7_all.deb
 715024ce27663744dac42f7bccafe4fcd12c7762 12418 rt3.8-db-sqlite_3.8.8-7+squeeze7_all.deb
Checksums-Sha256: 
 6663647c8a2e55926e30833e5916e6876c412f07e13e6808f11512b99b178acd 1635 request-tracker3.8_3.8.8-7+squeeze7.dsc
 1c65bad7cabdeef163d541551810f38c079e1591947fcfdf7efe861ca342fa4c 128070 request-tracker3.8_3.8.8-7+squeeze7.diff.gz
 99c7fc403eb53be459163430ece9d28bbeee03e1ee091621a53279c51b1c7c40 4670230 request-tracker3.8_3.8.8-7+squeeze7_all.deb
 7d61ae6ae8e6270cc7354769d647dcc69be9ba52025c1c531e6708eb2031e29c 48648 rt3.8-clients_3.8.8-7+squeeze7_all.deb
 6af9cb12d8290daf5ec4da6adc99f4f882aaa1aa29c5851fad42614241ddf607 13662 rt3.8-apache2_3.8.8-7+squeeze7_all.deb
 93947ce27524705903bd3c4f92a31c506ba925beb18fe7963a763c4863725f8a 12328 rt3.8-db-postgresql_3.8.8-7+squeeze7_all.deb
 e8e78bf06f3a2e44363c8c0404342488b4c3be9a3a07ccaf58e804d794892dd1 12326 rt3.8-db-mysql_3.8.8-7+squeeze7_all.deb
 62e6a9318a22351ab8bb2b178f6d4f5828d539b776e933958a9bf9d0f3f95717 12418 rt3.8-db-sqlite_3.8.8-7+squeeze7_all.deb
Files: 
 a636a3783bdb366f76d496c62413ca33 1635 misc optional request-tracker3.8_3.8.8-7+squeeze7.dsc
 0ecf88499bfa061d91a160ffd8b8ec67 128070 misc optional request-tracker3.8_3.8.8-7+squeeze7.diff.gz
 4855d7713e952d5488a91f4f0408f4b9 4670230 misc optional request-tracker3.8_3.8.8-7+squeeze7_all.deb
 e766b64e053cc9fd06412579e8c65a78 48648 misc optional rt3.8-clients_3.8.8-7+squeeze7_all.deb
 715d298187c743507a9d938d08c34387 13662 misc optional rt3.8-apache2_3.8.8-7+squeeze7_all.deb
 f2eefde62c227d035e50969d1f13e5d1 12328 misc optional rt3.8-db-postgresql_3.8.8-7+squeeze7_all.deb
 1388c0735fbbb540bc278da35a2e1dee 12326 misc optional rt3.8-db-mysql_3.8.8-7+squeeze7_all.deb
 fb894a110f9c19f965ee6303a7cc9f73 12418 misc optional rt3.8-db-sqlite_3.8.8-7+squeeze7_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iD8DBQFRmN2tYzuFKFF44qURAueqAJ4nBUQxPxIKpS1rZUAjjNMCBoYz1gCg46u5
n/mkQOKIceGQf/ugvsYWh7g=
=VwND
-----END PGP SIGNATURE-----


Reply to: