-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Mon, 12 Sep 2011 03:25:00 +0200 Source: mantis Binary: mantis Architecture: source all Version: 1.2.8-1 Distribution: unstable Urgency: medium Maintainer: Silvia Alvarez <sils@powered-by-linux.com> Changed-By: Silvia Alvarez <sils@powered-by-linux.com> Description: mantis - web-based bug tracking system Closes: 640589 Changes: mantis (1.2.8-1) unstable; urgency=medium . * Urgency medium: fixed serious bug (policy violations) + debian/mantis.config: Allow set empty password in debconf config to prevent errors in unattended installations (--frontend:Noninteractive --priority=critical) (Closes: #640589) * New Security Upstream Release (1.2.8) * debian/README.Debian: + Added info about setting up custom variables. * debian/patches: + dropped: Fixed in new upstream version (1.2.8) Multiple vulnerabilities (LFI/XSS/Projax/PHPSELF) 000-Fix-640297-LFI-XSS-injection-bug-action-group-0.diff 000-Fix-640297-LFI-XSS-injection-bug-action-group-1.diff 000-Fix-640297-LFI-XSS-injection-via-PHPSELF.diff 000-Fix-640297-Projax-XSS-injection.diff * debian/copyright: updated * debian/mantis.lintian-overrides: added Checksums-Sha1: 47645747a70550a76cdf892ebc7e99d638f7af38 1829 mantis_1.2.8-1.dsc 9f5969e612f7e9ef0572e833e12dfb4d0a45a959 3283526 mantis_1.2.8.orig.tar.gz e866e1e54686b7b20c37f051b18e825960c6dc42 52618 mantis_1.2.8-1.debian.tar.gz 124f2c4b337b4dc2135f817aeee439fac2364cda 2077020 mantis_1.2.8-1_all.deb Checksums-Sha256: d334e64c5a8cb922053ff4cad20e5faf68ecce0f0f3c171a998ff55332f67aff 1829 mantis_1.2.8-1.dsc eab079f9cabf82786af50649b6d186e518b21b8fcb9e4b53cdf04f6c9d9c0f03 3283526 mantis_1.2.8.orig.tar.gz 694b01e9ae140db861a5bb1697a45d29c140644ac14cf75fd6777902ab8cf74b 52618 mantis_1.2.8-1.debian.tar.gz 6cab210dc8325da4a42701920ba39a6d20282d2489ff569bdc3c9fba8e0ba1ac 2077020 mantis_1.2.8-1_all.deb Files: 4000e367b3fc8c6d7bbc23a692eb9fa2 1829 web optional mantis_1.2.8-1.dsc 1531030793810c28f4da32bb743948cd 3283526 web optional mantis_1.2.8.orig.tar.gz afa9f3acbd4112007fe2d46b20b18964 52618 web optional mantis_1.2.8-1.debian.tar.gz 207c66ae72c49a9a7a9be8d57e1b6ad6 2077020 web optional mantis_1.2.8-1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) iQIcBAEBCAAGBQJObWRBAAoJEKgvu4Pz1XAz2IsQAMOd2CQcz4D8iXDFLDk3gbn3 mJFdz6nc/gXksRWCo+kr+BxQ1libQDpRKQwUBIU7HB5bKyWetv9C+H8xJGTnErQL 6p6j+AbOmPlNkkE73OEaYH/I8fSdjG1FRsKWk7PmZTHzVktqw9+DjS/ShoL2Ou1q TLzPlQ6RQ+QBk9xrIn1deL+YdO4tOLz4LOKD9fvvQrTSbp7hNabB2qzTHbeHPPqE z0QFN0xEXLymemYRkg97VxkwYg/RRiF3M/SIB6flKSQfS9f+ZdDveETMJpKzbd32 sVMdWLLJtbmaq0xExvwargR8c4D1reOpVIB0VgJabvesB9/dlw/buHaMURsio6wg QnWG64PaFX7l8uEyJU9wHYpP+3FevqxRlYifWAII9QThr0ETWZE0e6YxLl+aP+s6 WE83dhNpm6CN1hEqyVXtACJXDo2qokhMQbf7l4hVcVx3+K+nx8g7BS9WxnVYikSi KxnV8Ds/pG8qYw1o8JfEApx86/SDSpfKQQnLkwrLj50UZ1vqk5jeGGwQm65JosZf v73qZXiZe9HI8XPs2lpdDdfYkl6WAOXXKNTRSzS+Dkr7aphDk2NDx51bj5nODosw gH99aiiSZuTntSKrjpKng3cj/IHXAd3eo5EF2NoYAZDKfYA5tbW1+dyKeJyCuFHR mcZenjbo55rVxyeoHVxQ =lgGz -----END PGP SIGNATURE----- Accepted: mantis_1.2.8-1.debian.tar.gz to main/m/mantis/mantis_1.2.8-1.debian.tar.gz mantis_1.2.8-1.dsc to main/m/mantis/mantis_1.2.8-1.dsc mantis_1.2.8-1_all.deb to main/m/mantis/mantis_1.2.8-1_all.deb mantis_1.2.8.orig.tar.gz to main/m/mantis/mantis_1.2.8.orig.tar.gz