Accepted webalizer-stonesteps 2.4.1.2-1 (source i386)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Mon, 19 Jun 2006 08:45:24 +0200
Source: webalizer-stonesteps
Binary: webalizer-stonesteps
Architecture: source i386
Version: 2.4.1.2-1
Distribution: experimental
Urgency: low
Maintainer: Joost van Baal <joostvb@debian.org>
Changed-By: Joost van Baal <joostvb@debian.org>
Description:
webalizer-stonesteps - Web server log file analysis program
Closes: 373161
Changes:
webalizer-stonesteps (2.4.1.2-1) experimental; urgency=low
.
* New upstream (missed 2.4.0.3, which was released 2006-06-04).
- From upstream 2.4.1.2 release announcement:
Fixed an XSS vulnerability in the user agent report. We have
identified a cross-site scripting (XSS) security vulnerability in
v2.4.0.3 that may allow the attacker to run arbitrary JavaScript code
when the Top N User Agents report is being viewed. This vulnerability
was reintroduced into the code in February of 2006 (v2.2.0.1). If you
are running a vulnerable version of Stone Steps Webalizer, we urge you
to replace it with the new build.
* makefile.gnu, debian/rules: makefile.gnu no longer needs patching: upstream
fixed rpath in 2.4.0.3 by honoring C_LDFLAGS; upstream fixed -march in
2.4.1.2 by honoring CPUARCH. Use these variables in debian/rules.
(Closes: #373161).
* debian/docs: DNS.README no longer shipped with upstream.
Files:
2a55114825ef27ee04763434878b7843 683 web optional webalizer-stonesteps_2.4.1.2-1.dsc
ef35dff66c3284376428256f5a00b43c 335119 web optional webalizer-stonesteps_2.4.1.2.orig.tar.gz
438514ac09ab00e2b6b3f7b1b9891fb2 5297 web optional webalizer-stonesteps_2.4.1.2-1.diff.gz
7dc74c337ad91bbee4309bba6a047a9d 154882 web optional webalizer-stonesteps_2.4.1.2-1_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (GNU/Linux)
iD8DBQFElknZBgac8paUV/ARAtM3AJ9tl3mjnc/47c/r9AKv+kkqw3s1rwCdGn6d
GzARJVZOvOT5EHlAZ90BT+Q=
=7Tbx
-----END PGP SIGNATURE-----
Accepted:
webalizer-stonesteps_2.4.1.2-1.diff.gz
to pool/main/w/webalizer-stonesteps/webalizer-stonesteps_2.4.1.2-1.diff.gz
webalizer-stonesteps_2.4.1.2-1.dsc
to pool/main/w/webalizer-stonesteps/webalizer-stonesteps_2.4.1.2-1.dsc
webalizer-stonesteps_2.4.1.2-1_i386.deb
to pool/main/w/webalizer-stonesteps/webalizer-stonesteps_2.4.1.2-1_i386.deb
webalizer-stonesteps_2.4.1.2.orig.tar.gz
to pool/main/w/webalizer-stonesteps/webalizer-stonesteps_2.4.1.2.orig.tar.gz
Reply to: