-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 14 Nov 2022 04:24:11 +0100 Source: dokuwiki Architecture: source Version: 0.0.20220731.a-1 Distribution: unstable Urgency: medium Maintainer: Debian DokuWiki Team <team+dokuwiki@tracker.debian.org> Changed-By: Axel Beckert <abe@debian.org> Closes: 974961 1008649 1011056 Changes: dokuwiki (0.0.20220731.a-1) unstable; urgency=medium . * Salvage package. (Closes: #1008649) + Set Maintainer to the Debian Dokuwiki Team and set Anton Gladky and myself as Uploaders. + Upload to unstable again. * Import new upstream release »2022-07-31a “Igor”« + Drop patch add_vesion_to_snapshot.diff. (Just needed for packaging snapshots.) + Refresh debianize.diff. + Drop support for PHP versions earlier than 7.2. → Add according version constraint to the php dependency. + Fixes CVE-2022-28919 XSS vulnerability via the function _generateFilename. (Closes: #1011056) + Fixes a vulnerability in diff viewer (Github issue #3761) + More PHP8-related fixes. (Closes: #974961) + Disable "testing" plugin by default by setting its directory to be only accessible by root. Add lintian override for that. + postinst + dokuwiki-addsite: Handle creation of per-animal data/log directories in farms, + Add a NEWS.Debian entry mentioning the need to manually create per-animal log directories in farm setups which don't use standard paths. + debian/copyright: Drop now obsolete vendor/paragonie/random_compat stanza. Also drop now unneeded Artistic license. Thanks Lintian! + Update path and license of the IXR library in debian/copyright. + Merge debian/copyright stanzas for vendor/splitbrain/php-archive/*, vendor/splitbrain/php-cli/* and the new vendor/splitbrain/slika/* into simply vendor/splitbrain/* and update copyright years. * Bracketize lintian overrides. * Add a debian/.gitignore file. * Run "wrap-and-sort -a". * Replace debian/compat with versioned dependency on debhelper-compat and switch from compat level 11 to 13. * Add missing dependency on ${perl:Depends} for DEBIAN/config. * Declare compliance with Debian Policy 4.6.1. * Add lintian overrides for translations of help page. * Don't ship .gitignore or .gitattributes files in the resulting .deb package. Also drop redundant license files from the resulting .deb. * Add more lintian overrides for DokuWiki's *.info.txt metadata files. * Bump debian/watch version from 3 to 4. Thanks Lintian! * debian/copyright: Reflow CC-BY-3.0 license. (Removes overlong lines.) * Checked all other occurrences of the lintian warning very-long-line-length-in-source-file and added commented overrides. Checksums-Sha1: 7c18a328cf79cfae93e05d2e844d6689bb946ba9 1999 dokuwiki_0.0.20220731.a-1.dsc ac71cc833e1318d1a2cc69cd656e2da8d38fbb7a 3985949 dokuwiki_0.0.20220731.a.orig.tar.gz b1f590ce71b5b3fbb39b43369273d96b262b0c7d 105136 dokuwiki_0.0.20220731.a-1.debian.tar.xz 0eb6a46a1f0e663fa74a6a14d588733a704f346b 7145 dokuwiki_0.0.20220731.a-1_source.buildinfo Checksums-Sha256: dca6607e3ff54ecf5ff16ab4fa2497a014e19280d7b6f8363b4d99f29b757f7c 1999 dokuwiki_0.0.20220731.a-1.dsc 48ed2ae11fa4a0ae8338af9aedc837601b34e21c0be15d16e2d6228ca7a91f23 3985949 dokuwiki_0.0.20220731.a.orig.tar.gz d8e8de54d0858ba7537e59e4891a678820cde9bf396b80f40bfdc7b4cc3dcbf4 105136 dokuwiki_0.0.20220731.a-1.debian.tar.xz 2c847aa3f62b9b0bc0ae2f9329e078dc6d4b928c338936be8704abffcf0e693c 7145 dokuwiki_0.0.20220731.a-1_source.buildinfo Files: f8e7a1c36b6b90d68973366ef377efb2 1999 web optional dokuwiki_0.0.20220731.a-1.dsc 4459ea99e3a4ce2b767482f505724dcc 3985949 web optional dokuwiki_0.0.20220731.a.orig.tar.gz 16a7c0dccaad65b2ec0d79c2265caac4 105136 web optional dokuwiki_0.0.20220731.a-1.debian.tar.xz f425e620ee2c952e13d3592ef937ec99 7145 web optional dokuwiki_0.0.20220731.a-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEERoyJeTtCmBnp12Ema+Zjx1o1yXUFAmNxtqAACgkQa+Zjx1o1 yXW5ZBAAjIvznsaWuSzCIzQyH/Bq3z0xIylriUoP0mj7NDEE2PrJ1NKEAOGlAy72 p3lceZ0hiAxTt7IscXi/B6e16Wx7u5CBrbPPRe0z3DB00VZS1lu3d3WjOpObQSkd ZuYLzlvLUAp3b6ZDfp7Nhzk4H4sbJM16+lZZNRJWct6um3j+HJLdRILCMuCPlLgR x2GUqvVqcxBMDAdLsEYsu1FOvIO4OMcmrz7exNo4jGFJrtU6N15NC00jMB8h+ssu kbIwlDV7BJO5x6oIa4x7lpaK/0rhZX1oRPefRzlNYRuoDArOjxCBWD6UlbVkzdr0 1gtgsUpcN9s8wvI9MvIAr8hPzM7Z6HXwFxcRWamWmYpAN3huTb/C/Dv/SpsEx7nF VKqQJu0xg3kl9IEPaoWnH3R3UM0vQKtTAW1LWE/S7nyfMGgV62FrAVXAjsA8qu7V JGWT5VhJ+xCybh9qldsr2Zm7ExWjl3tDcyNobb9YXEUVuRMB9mMmfdMKerPaauYX 7Wqtywod8Z/yOWgHhuGmBoDTEnMJwBsaqTSjXHB62+NO0bKRSqrv6rdbZ8ChfIhb 4HgrztRW6bV5uN9j8juetQRtZvrCyEos8GgK/VpY1R+qo8Sb3mzI67HFit9Tc4lM rxO7HlxkPDcZbNPbIGXfF218aVyQZ58QpCCpQ0U5H8zDFBuN3+0= =6X/E -----END PGP SIGNATURE-----