Activity log for bug #275019

Date Who What changed Old value New value Message
2008-09-27 01:11:41 William Grant bug added bug
2008-09-27 01:12:16 William Grant who_made_private wgrant
2008-09-27 01:12:30 William Grant bug added subscriber MOTU SWAT
2008-09-27 01:13:58 William Grant newsbeuter: status New In Progress
2008-09-27 01:13:58 William Grant newsbeuter: assignee wgrant
2008-09-27 01:13:58 William Grant newsbeuter: importance Undecided High
2008-09-27 01:13:58 William Grant newsbeuter: statusexplanation
2008-09-27 01:14:17 William Grant newsbeuter: status New Triaged
2008-09-27 01:14:17 William Grant newsbeuter: assignee wgrant
2008-09-27 01:14:17 William Grant newsbeuter: importance Undecided High
2008-09-27 01:14:17 William Grant newsbeuter: statusexplanation
2008-09-27 01:34:29 William Grant newsbeuter: status Triaged In Progress
2008-09-27 01:36:00 William Grant bug added attachment 'newsbeuter_0.7-1ubuntu0.1.diff' (hardy debdiff)
2008-09-29 18:23:29 Jamie Strandboge newsbeuter: status In Progress Fix Committed
2008-09-29 21:18:56 Jamie Strandboge newsbeuter: status In Progress Fix Released
2008-09-29 21:18:56 Jamie Strandboge newsbeuter: statusexplanation 0.9.1-1+lenny3 is in Intrepid now, and contains the patch to view.cpp
2008-09-30 20:33:08 Jamie Strandboge newsbeuter: status Fix Committed Fix Released
2008-09-30 20:33:08 Jamie Strandboge newsbeuter: statusexplanation newsbeuter (0.7-1ubuntu0.1) hardy-security; urgency=low * SECURITY UPDATE: arbitrary code execution via crafted item URLS. - src/view.cpp: Escape single quotes in item URLs. Fixes arbitrary code execution. Patch from Debian. - References: + CVE-2008-3907