-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Wed, 22 Apr 2009 14:18:55 +1200 Source: mahara Binary: mahara mahara-apache2 Architecture: source all Version: 1.0.4-4+lenny2 Distribution: stable-security Urgency: high Maintainer: Mahara Debian Packaging Team <pkg-debian@mahara.org> Changed-By: Francois Marier <francois@debian.org> Description: mahara - Electronic portfolio, weblog, and resume builder mahara-apache2 - Electronic portfolio, weblog, and resume builder - apache2 config Changes: mahara (1.0.4-4+lenny2) stable-security; urgency=high . * Fix XSS vulnerabilities (CVE-2009-0664) * Escape the clamav path provided by the admin Checksums-Sha1: 4b245265eb0dfae9f921db26f9939afa77a0cbc5 1303 mahara_1.0.4-4+lenny2.dsc c6060f3c65c8fec849e64311d07e48ac08396842 2383079 mahara_1.0.4.orig.tar.gz 17d1a06f964172ec0b1bc2dfff4e7527d51a93ce 39307 mahara_1.0.4-4+lenny2.diff.gz fe5f12c425bd4a5065e919097b4dce87ef0ed37b 1637064 mahara_1.0.4-4+lenny2_all.deb df499a652279125c046bff17c22c71016a44014b 7830 mahara-apache2_1.0.4-4+lenny2_all.deb Checksums-Sha256: 1c60b183674e7fba119c19a3db92176796ef7af89b86bf5d0323dc394db6a7aa 1303 mahara_1.0.4-4+lenny2.dsc e2218bdbc94e628bf6a4e2c5b99481a7afa14346bdce177ea9f377242375d776 2383079 mahara_1.0.4.orig.tar.gz d1a4725c86f8f0807974bf71d23f6f1e733c44183b172d7fde139c3fc2d859e1 39307 mahara_1.0.4-4+lenny2.diff.gz 71cad6f0544bfbdd73a9353ce71bc0a29d10e682107c5c86306117ced4241907 1637064 mahara_1.0.4-4+lenny2_all.deb d8fa236101860259b72820a1487a249c0ccec6ff7acc721c38f216859ca304c4 7830 mahara-apache2_1.0.4-4+lenny2_all.deb Files: 934fdf17abf7221e30fe68c925377126 1303 web optional mahara_1.0.4-4+lenny2.dsc cf1158e4fe3cdba14fb1b71657bf8cc9 2383079 web optional mahara_1.0.4.orig.tar.gz 3193a6e1483f1375430cc236230bc9cc 39307 web optional mahara_1.0.4-4+lenny2.diff.gz 9fc42b011a826509edc1fccdb9bc149e 1637064 web optional mahara_1.0.4-4+lenny2_all.deb 30c258196ccbdddc6c4f25e1534ba96e 7830 web optional mahara-apache2_1.0.4-4+lenny2_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iEYEARECAAYFAknuhZUACgkQScUZKBnQNIZJRQCfTAKZKJFdquoNcuDECszLvE7p IIcAnAuZBFSDKxHrzPpVPbT97QOc+7ys =SNF9 -----END PGP SIGNATURE----- Accepted: mahara-apache2_1.0.4-4+lenny2_all.deb to pool/main/m/mahara/mahara-apache2_1.0.4-4+lenny2_all.deb mahara_1.0.4-4+lenny2.diff.gz to pool/main/m/mahara/mahara_1.0.4-4+lenny2.diff.gz mahara_1.0.4-4+lenny2.dsc to pool/main/m/mahara/mahara_1.0.4-4+lenny2.dsc mahara_1.0.4-4+lenny2_all.deb to pool/main/m/mahara/mahara_1.0.4-4+lenny2_all.deb