2008-09-27 01:11:41 |
William Grant |
bug |
|
|
added bug |
2008-09-27 01:12:16 |
William Grant |
who_made_private |
wgrant |
|
|
2008-09-27 01:12:30 |
William Grant |
bug |
|
|
added subscriber MOTU SWAT |
2008-09-27 01:13:58 |
William Grant |
newsbeuter: status |
New |
In Progress |
|
2008-09-27 01:13:58 |
William Grant |
newsbeuter: assignee |
|
wgrant |
|
2008-09-27 01:13:58 |
William Grant |
newsbeuter: importance |
Undecided |
High |
|
2008-09-27 01:13:58 |
William Grant |
newsbeuter: statusexplanation |
|
|
|
2008-09-27 01:14:17 |
William Grant |
newsbeuter: status |
New |
Triaged |
|
2008-09-27 01:14:17 |
William Grant |
newsbeuter: assignee |
|
wgrant |
|
2008-09-27 01:14:17 |
William Grant |
newsbeuter: importance |
Undecided |
High |
|
2008-09-27 01:14:17 |
William Grant |
newsbeuter: statusexplanation |
|
|
|
2008-09-27 01:34:29 |
William Grant |
newsbeuter: status |
Triaged |
In Progress |
|
2008-09-27 01:36:00 |
William Grant |
bug |
|
|
added attachment 'newsbeuter_0.7-1ubuntu0.1.diff' (hardy debdiff) |
2008-09-29 18:23:29 |
Jamie Strandboge |
newsbeuter: status |
In Progress |
Fix Committed |
|
2008-09-29 21:18:56 |
Jamie Strandboge |
newsbeuter: status |
In Progress |
Fix Released |
|
2008-09-29 21:18:56 |
Jamie Strandboge |
newsbeuter: statusexplanation |
|
0.9.1-1+lenny3 is in Intrepid now, and contains the patch to view.cpp |
|
2008-09-30 20:33:08 |
Jamie Strandboge |
newsbeuter: status |
Fix Committed |
Fix Released |
|
2008-09-30 20:33:08 |
Jamie Strandboge |
newsbeuter: statusexplanation |
|
newsbeuter (0.7-1ubuntu0.1) hardy-security; urgency=low
* SECURITY UPDATE: arbitrary code execution via crafted item URLS.
- src/view.cpp: Escape single quotes in item URLs. Fixes arbitrary
code execution. Patch from Debian.
- References:
+ CVE-2008-3907
|
|