1.53 should be merged
Bug #375230 reported by
Charles Kerr
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
transmission (Ubuntu) |
Invalid
|
Medium
|
Krzysztof Klimonda | ||
Bug Description
Binary package hint: transmission
Since 9.04 is using the Transmission 1.5x series, it should be updated to use 1.53, which was released today.
1.53 only has two changes from 1.52. One is a minor locale fix in the JSON parser, but the other closes a potential CSRF security hole for users who access Transmission via a web browser.
Thanks for your consideration.
CVE References
visibility: | private → public |
Changed in transmission (Ubuntu): | |
status: | New → Confirmed |
importance: | Undecided → Medium |
Changed in transmission (Ubuntu): | |
assignee: | nobody → Krzysztof Klimonda (kklimonda) |
status: | Confirmed → In Progress |
Changed in transmission (Ubuntu): | |
status: | In Progress → Triaged |
To post a comment you must log in.
This has been in progress for two months now.
It's my understanding that some of the holdup is because there are changes between 1.51 and 1.53 that focus on, for example, indentation cleanup rather than pure bug fixes.
Is there anything upstream can do to make the 1.51 -> 1.53 jump easier to swallow?
As an aside, 1.53 has had some burn-in time for Mac OS X 10.4 users... 1.60 and above require OS X 10.5.