[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Accepted webalizer-stonesteps 2.4.1.2-1 (source i386)



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.7
Date: Mon, 19 Jun 2006 08:45:24 +0200
Source: webalizer-stonesteps
Binary: webalizer-stonesteps
Architecture: source i386
Version: 2.4.1.2-1
Distribution: experimental
Urgency: low
Maintainer: Joost van Baal <joostvb@debian.org>
Changed-By: Joost van Baal <joostvb@debian.org>
Description: 
 webalizer-stonesteps - Web server log file analysis program
Closes: 373161
Changes: 
 webalizer-stonesteps (2.4.1.2-1) experimental; urgency=low
 .
   * New upstream (missed 2.4.0.3, which was released 2006-06-04).
     - From upstream 2.4.1.2 release announcement:
        Fixed an XSS vulnerability in the user agent report.  We have
        identified a cross-site scripting (XSS) security vulnerability in
        v2.4.0.3 that may allow the attacker to run arbitrary JavaScript code
        when the Top N User Agents report is being viewed. This vulnerability
        was reintroduced into the code in February of 2006 (v2.2.0.1). If you
        are running a vulnerable version of Stone Steps Webalizer, we urge you
        to replace it with the new build.
   * makefile.gnu, debian/rules: makefile.gnu no longer needs patching: upstream
     fixed rpath in 2.4.0.3 by honoring C_LDFLAGS; upstream fixed -march in
     2.4.1.2 by honoring CPUARCH.  Use these variables in debian/rules.
     (Closes: #373161).
   * debian/docs: DNS.README no longer shipped with upstream.
Files: 
 2a55114825ef27ee04763434878b7843 683 web optional webalizer-stonesteps_2.4.1.2-1.dsc
 ef35dff66c3284376428256f5a00b43c 335119 web optional webalizer-stonesteps_2.4.1.2.orig.tar.gz
 438514ac09ab00e2b6b3f7b1b9891fb2 5297 web optional webalizer-stonesteps_2.4.1.2-1.diff.gz
 7dc74c337ad91bbee4309bba6a047a9d 154882 web optional webalizer-stonesteps_2.4.1.2-1_i386.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (GNU/Linux)

iD8DBQFElknZBgac8paUV/ARAtM3AJ9tl3mjnc/47c/r9AKv+kkqw3s1rwCdGn6d
GzARJVZOvOT5EHlAZ90BT+Q=
=7Tbx
-----END PGP SIGNATURE-----


Accepted:
webalizer-stonesteps_2.4.1.2-1.diff.gz
  to pool/main/w/webalizer-stonesteps/webalizer-stonesteps_2.4.1.2-1.diff.gz
webalizer-stonesteps_2.4.1.2-1.dsc
  to pool/main/w/webalizer-stonesteps/webalizer-stonesteps_2.4.1.2-1.dsc
webalizer-stonesteps_2.4.1.2-1_i386.deb
  to pool/main/w/webalizer-stonesteps/webalizer-stonesteps_2.4.1.2-1_i386.deb
webalizer-stonesteps_2.4.1.2.orig.tar.gz
  to pool/main/w/webalizer-stonesteps/webalizer-stonesteps_2.4.1.2.orig.tar.gz



Reply to: