-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Mon, 27 Feb 2012 21:14:48 +0000 Source: moodle Binary: moodle Architecture: source all Version: 1.9.9.dfsg2-5 Distribution: unstable Urgency: high Maintainer: Moodle Packaging Team <pkg-moodle-maintainers@lists.alioth.debian.org> Changed-By: Tomasz Muras <nexor1984@gmail.com> Description: moodle - course management system for online learning Closes: 652235 Changes: moodle (1.9.9.dfsg2-5) unstable; urgency=high . * Backporting security fixes from Moodle 1.9.15 and 1.9.16 (closes: #652235) - MSA-11-0054 Personal information leak - MSA-11-0045 Potential to masquerade through MNet (CVE-2011-4584) - MSA-11-0046 Insecure authentication transmission (CVE-2011-4585) - MSA-11-0047 Possible injection attack in Calendar (CVE-2011-4586) - MSA-11-0048 Password loss issue (CVE-2011-4587) - MSA-11-0049 Network restriction ineffective with MNet (CVE-2011-4588) - MSA-12-0007 Email injection prevention (CVE-2012-0796) - MSA-12-0006 Additional email address validation (CVE-2012-0795) - MSA-12-0005 Encryption enhancement (CVE-2012-0794) - MSA-12-0004 Added profile image security (CVE-2012-0793) - MSA-12-0003 Added password protection - MSA-12-0002 Personal information leak, previously MSA-11-0040 (CVE-2011-4308 and CVE-2012-0792) - MSA-12-0001 Recaptcha transmission consistency issue Checksums-Sha1: a0dc1a7b358bc567130cdaaa749bb96230dd2e4b 1694 moodle_1.9.9.dfsg2-5.dsc 651b2a760a61bab17dcaa562a028e0fcf1fdeab5 86892 moodle_1.9.9.dfsg2-5.debian.tar.gz 86288ed0a005d47172af07889d4083a91f19839f 10046778 moodle_1.9.9.dfsg2-5_all.deb Checksums-Sha256: f8ae4823b0c14b0e70e46d85f30ca5db8c62b0db8b54fe9606dec335a2e19d33 1694 moodle_1.9.9.dfsg2-5.dsc 92cc5358135cd00a6e67d32354a88a2642e446631718c74303699a63f65c7ff2 86892 moodle_1.9.9.dfsg2-5.debian.tar.gz b364d113ddffb9f25020f76b860b33ebda1b00890b0723b3fd26f229eec6001b 10046778 moodle_1.9.9.dfsg2-5_all.deb Files: 2ef61dc56056e0dc98bfb71cac2a208e 1694 web optional moodle_1.9.9.dfsg2-5.dsc 356dd5bcd23fe28fa8d4fd96a731cb2e 86892 web optional moodle_1.9.9.dfsg2-5.debian.tar.gz 33623f9a5d381b996bdacf696663b6c0 10046778 web optional moodle_1.9.9.dfsg2-5_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAEBAgAGBQJPS/S7AAoJEIfMiettfca2HIoH/jaQn+BQO/wLs/R6PQjUepvX M+SKmFKiCsg7ckmBCnIh8F8FA5oJAOXmog98ojTuz/FPwRsVK4wPBb2yT/6t+Olz KppQcAJbjrzWB4wvdwSFuQOcSbEuwhih6x5KDWsxQJVCaWMt0fQ3wLkpnimrlA/z K2RPfKGnyd+H8zdFCycysnCdr/28ulq1e+iBZJ9i7Tzcy6LIFag2vXzaY5TbkN9/ 2DQwJ0tMPdA3n/WYmYxmJCkX7aH6WzspR1PyYop5zH+ehj3U6OFP4H4dfupY7iv5 kRqw6bwlXuAhiQ1/1BaQHcAzumXVYbpdz9xFD2Rdb6ccsT7I2LYhbAWbx63oqJ4= =71z+ -----END PGP SIGNATURE----- Accepted: moodle_1.9.9.dfsg2-5.debian.tar.gz to main/m/moodle/moodle_1.9.9.dfsg2-5.debian.tar.gz moodle_1.9.9.dfsg2-5.dsc to main/m/moodle/moodle_1.9.9.dfsg2-5.dsc moodle_1.9.9.dfsg2-5_all.deb to main/m/moodle/moodle_1.9.9.dfsg2-5_all.deb