[Python-modules-team] Bug#780506: marked as done (requests: CVE-2015-2296: session fixation and cookie stealing issue)

2015-03-16 Thread Debian Bug Tracking System
Your message dated Mon, 16 Mar 2015 23:03:50 + with message-id and subject line Bug#780506: fixed in requests 2.4.3-6 has caused the Debian Bug report #780506, regarding requests: CVE-2015-2296: session fixation and cookie stealing issue to be marked as done. This means that you claim that th

[Python-modules-team] Processing of requests_2.4.3-6_amd64.changes

2015-03-16 Thread Debian FTP Masters
requests_2.4.3-6_amd64.changes uploaded successfully to localhost along with the files: requests_2.4.3-6.dsc requests_2.4.3-6.debian.tar.xz python-requests_2.4.3-6_all.deb python3-requests_2.4.3-6_all.deb python-requests-whl_2.4.3-6_all.deb Greetings, Your Debian queue daemon (r

[Python-modules-team] Processed: block 764959 with 780600

2015-03-16 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > block 764959 with 780600 Bug #764959 [python-flaskext.wtf] please provide a python 3.x package 764959 was not blocked by any bugs. 764959 was blocking: 764961 Added blocking bug(s) of 764959: 780600 > thanks Stopping processing here. Please conta

[Python-modules-team] Bug#780506: Reproduction script

2015-03-16 Thread Daniele Tricoli
Hello Daniel, On Monday 16 March 2015 11:18:42 Daniel Watkins wrote: > I've written a simple reproduction script for the CVE, which validates > whether or not the issue is fixed. I patched requests yesterday and I made a pre unblock request: RT agrees for unblocking requests 2.4.3-6 with the fix

[Python-modules-team] Bug#780600: please provide a python 3.x package

2015-03-16 Thread Stefano Zacchiroli
Source: wtforms Version: 2.0.1-1 Severity: normal According to https://pypi.python.org/pypi/WTForms , WTForms is compatible with Python 3.x; however no python3-wtforms package is provided in Debian. Can you please provide one? With many thanks for maintaining WTForms in Debian! Cheers. -- Syst

[Python-modules-team] Bug#725462: 's contact info

2015-03-16 Thread Thiago Bellini Ribeiro via Brewster
Title: Join Brewster Current City 725...@bugs.debian.org Mobile Number    

[Python-modules-team] Bug#780506: Reproduction script

2015-03-16 Thread Daniel Watkins
Hello, I've written a simple reproduction script for the CVE, which validates whether or not the issue is fixed. You can find it at https://gist.github.com/OddBloke/211ff98b63a8cfb3f6d4; all you need installed is python-bottle (for HTTP serving). Dan signature.asc Description: OpenPGP digita