-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Tue, 26 Oct 2004 16:09:03 +0200 Source: bugzilla Binary: bugzilla bugzilla-doc Architecture: source all Version: 2.16.7-0.1 Distribution: unstable Urgency: low Maintainer: RĂ©mi Perrot <[EMAIL PROTECTED]> Changed-By: Francesco Paolo Lovergine <[EMAIL PROTECTED]> Description: bugzilla - Mozilla bug tracking system bugzilla-doc - comprehensive guide to Bugzilla Closes: 253841 260772 260773 260774 Changes: bugzilla (2.16.7-0.1) unstable; urgency=low . * NMU 0-days due to major security issues, solved upstream. * New upstream release: - Fix security relevant bug CAN-2004-0704: Remote attackers were allowed to view hidden products (closes: #260772) - Fix security relevant bugs CAN-2004-0705: Several Cross-Site-Scripting bugs allowed remote attackers to execute Javascript-Code with other users' privileges (closes: #260773) - Fix security relevant bug CAN-2004-0707: An SQL injection vulnerability allowed remote attackers which had the privilege to grant group membership privileges to execute arbitrary SQL commands (closes: #260774) * Include complete copyright statements collected from the sources (closes: #253841) . Thanks Moritz Muehlenhoff for initial packaging. Files: df789c8b54f6ab05a320d7413cf2456e 618 web optional bugzilla_2.16.7-0.1.dsc b3f3fcac3103c139a218e7316a9bbcc7 1378708 web optional bugzilla_2.16.7.orig.tar.gz 899efcbe654a2e4bd47be119e9410e52 31591 web optional bugzilla_2.16.7-0.1.diff.gz 54a07a149d062c9c3bf8bac929e8b5b8 358492 web optional bugzilla_2.16.7-0.1_all.deb 2dcf59c0108fc5d910c68fe246fdd3b8 571030 doc optional bugzilla-doc_2.16.7-0.1_all.deb
-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.5 (GNU/Linux) iD8DBQFBfl1ypFNRmenyx0cRAlhYAJ9JQgRgG/TCRhRHMNYwTGptvLrNxwCggH6s 2XUWdfAwDQLZa4P+a1Gb4Bc= =dAQn -----END PGP SIGNATURE----- Accepted: bugzilla-doc_2.16.7-0.1_all.deb to pool/main/b/bugzilla/bugzilla-doc_2.16.7-0.1_all.deb bugzilla_2.16.7-0.1.diff.gz to pool/main/b/bugzilla/bugzilla_2.16.7-0.1.diff.gz bugzilla_2.16.7-0.1.dsc to pool/main/b/bugzilla/bugzilla_2.16.7-0.1.dsc bugzilla_2.16.7-0.1_all.deb to pool/main/b/bugzilla/bugzilla_2.16.7-0.1_all.deb bugzilla_2.16.7.orig.tar.gz to pool/main/b/bugzilla/bugzilla_2.16.7.orig.tar.gz -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]