-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sat, 31 Jan 2009 22:13:59 +0000 Source: moodle Binary: moodle Architecture: source all Version: 1.6.3-2+etch2 Distribution: stable-security Urgency: high Maintainer: Moodle Packaging Team <moodle-packaging@catalyst.net.nz> Changed-By: Dan Poltawski <talktodan@gmail.com> Description: moodle - Course Management System for Online Learning Closes: 514284 Changes: moodle (1.6.3-2+etch2) stable-security; urgency=high . * Security update based on Moodle 1.6.9 (closes: #514284) - Fix XSS vulnerabilities in "login as" in HTML block (CVE-2009-0502) - Remove unusused htmlarea plugin (CVE-2008-5153) - Fix XSS vulnerabilities in log display (CVE-2009-0500) Files: b86fd980d09fc1f54744962d765a17d7 793 web optional moodle_1.6.3-2+etch2.dsc 60b9bf677040fbd71e7951deaa8b91d7 25398 web optional moodle_1.6.3-2+etch2.diff.gz 7a90893e954672f33e129aa4d7ca5aa3 6582298 web optional moodle_1.6.3-2+etch2_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFJk5qJScUZKBnQNIYRAgxCAJ9rfXiUXGrVwuwhRAw/3OL0RcHJvACgiafR v7N0GxjUVYKx1HrkNtcpp8w= =vp8Z -----END PGP SIGNATURE----- Accepted: moodle_1.6.3-2+etch2.diff.gz to pool/main/m/moodle/moodle_1.6.3-2+etch2.diff.gz moodle_1.6.3-2+etch2.dsc to pool/main/m/moodle/moodle_1.6.3-2+etch2.dsc moodle_1.6.3-2+etch2_all.deb to pool/main/m/moodle/moodle_1.6.3-2+etch2_all.deb