[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: please allow websvn updates into stable and testing



* Pierre Chifflier [Wed, 12 Nov 2008 13:27:46 +0100]:

> The second upload is for both unstable and testing:
> Please allow websvn 2.0-4 to enter testing, it contains fixes for the
> same security advisory, but for different problems:

>    * Security: fix potential Cross Site Scripting and Directory
>      transveral issues (Closes: #503330)

> Problems are fixed in quilt patches 10_security_dir_transversal.patch
> and 11_security_css.patch (attached). preg_replace affected code was removed in
> 2.x branch.

Luk unblocked this.

-- 
Adeodato Simó                                     dato at net.com.org.es
Debian Developer                                  adeodato at debian.org
 
Any life, no matter how long and complex it may be, is made up of a
single moment: the moment in which a man finds out, once and for all,
who he is.
                -- Jorge Luis Borges


Reply to: