Please sync mahara 1.1.7-1 (universe) from Debian unstable (main).

Bug #486687 reported by Bhavani Shankar
10
This bug affects 1 person
Affects Status Importance Assigned to Milestone
mahara (Ubuntu)
Fix Released
Wishlist
Unassigned

Bug Description

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

 affects ubuntu/mahara
 status new
 importance wishlist
 subscribe ubuntu-universe-sponsors

Please sync mahara 1.1.7-1 (universe) from Debian unstable (main).

Explanation of the Ubuntu delta and why it can be dropped:

Debian has fixed both the CVE's so can be synced again

Changelog since current lucid version 1.1.5-1ubuntu1:

mahara (1.1.7-1) unstable; urgency=high

  * New upstream release
    - Privilege escalation fix (CVE-2009-3298)
    - XSS fix (CVE-2009-3299)

  * Bump Standards-Version up to 3.8.3
  * Switch packaging license to refer to GPL-3
  * debian/mahara.config: Move -e to a separate line to silence lintian

 -- Francois Marier <email address hidden> Fri, 30 Oct 2009 13:46:40 +1300

mahara (1.1.6-1) unstable; urgency=low

  * New Upstream Version
  * README.Debian: must specify the character set when creating a database
    in the default instal of MySQL on Debian

 -- Francois Marier <email address hidden> Thu, 06 Aug 2009 22:22:01 +1200

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFLCVJVL+KnYRaooWIRApT7AJ9IYLL737tLp+Y0gMb8iLfYuIrbnwCeLa/l
b5pwqiUrCZDFbWSJoE3NvmQ=
=I8q/
-----END PGP SIGNATURE-----

CVE References

Changed in mahara (Ubuntu):
assignee: nobody → Fabrice Coutadeur (fabricesp)
status: New → In Progress
Revision history for this message
Fabrice Coutadeur (fabricesp) wrote :

Sync request ack'd

Changed in mahara (Ubuntu):
assignee: Fabrice Coutadeur (fabricesp) → nobody
status: In Progress → Triaged
Revision history for this message
Sebastien Bacher (seb128) wrote :

[Updating] mahara (1.1.5-1ubuntu1 [Ubuntu] < 1.1.7-1 [Debian])
 * Trying to add mahara...
  - <mahara_1.1.7.orig.tar.gz: downloading from http://ftp.debian.org/debian/>
  - <mahara_1.1.7-1.dsc: downloading from http://ftp.debian.org/debian/>
  - <mahara_1.1.7-1.diff.gz: downloading from http://ftp.debian.org/debian/>
I: mahara [universe] -> mahara_1.1.5-1ubuntu1 [universe].
I: mahara [universe] -> mahara-apache2_1.1.5-1ubuntu1 [universe].

Changed in mahara (Ubuntu):
status: Triaged → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.