Bug#594804: pu: package libwww-perl/5.813-1+lenny2
> diff -u libwww-perl-5.813/debian/changelog libwww-perl-5.813/debian/changelog
> --- libwww-perl-5.813/debian/changelog
> +++ libwww-perl-5.813/debian/changelog
> @@ -1,8 +1,16 @@
> +libwww-perl (5.813-1+lenny2) stable; urgency=low
> +
> + * CVE-2010-2253: Apply upstream patch to lwp-download to reject downloads to
> + filenames suggested by the server that start with a . (dot) character.
> + commit id of upstream patch: f97f339f552666ef79cdd2cf2a44032cf206bb6e
> +
> + -- Ansgar Burchardt <ansgar@43-1.org> Mon, 30 Aug 2010 01:29:12 +0900
> +
> libwww-perl (5.813-1+lenny1) stable; urgency=low
>
> * Fix incorrect use of redo. (Closes: #591462)
>
> - -- Ansgar Burchardt <ansgar@43-1.org> Wed, 04 Aug 2010 02:52:22 +0900
> + -- Ansgar Burchardt <ansgar@43-1.org> Sat, 07 Aug 2010 08:20:19 +0900
Please ignore the last two lines here. I ran debdiff against an older
version of libwww-perl_5.813-1+lenny1.
Regards,
Ansgar
Reply to: