-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Mon, 06 Jul 2009 20:27:45 +0200 Source: drupal6 Binary: drupal6 Architecture: source all Version: 6.12-1.1 Distribution: unstable Urgency: high Maintainer: Luigi Gangitano <luigi@debian.org> Changed-By: Nico Golde <nion@debian.org> Description: drupal6 - a fully-featured content management framework Closes: 535435 Changes: drupal6 (6.12-1.1) unstable; urgency=high . * Non-maintainer upload by the Security Team. * Apply upstream patch to fix: - XSS in the forum module - Input format access bypass via signatures - Password leakage via URLs (no CVE id yet; SA-CORE-2009-007; Closes: #535435). Checksums-Sha1: 17d15b7f2a75323699eb0c3e5b2f65c12c6603a1 1123 drupal6_6.12-1.1.dsc 4fb635dce0d43abf59f7f38321375193ea1cce71 19216 drupal6_6.12-1.1.diff.gz bcf7223c6361e0cda7e4f99b43489119779f6805 1109796 drupal6_6.12-1.1_all.deb Checksums-Sha256: 474e83e44300133542decc2e48598d4c94f9bdf4c2bee74fa998df76ddaa3ccc 1123 drupal6_6.12-1.1.dsc 52ca2f19b31ed154c723bff1553fee4d74904f771e058c4d552839c76fe45e12 19216 drupal6_6.12-1.1.diff.gz 073254585f4220f3347c480b647d11e9b2310627e86398aa8abe06aca6beab90 1109796 drupal6_6.12-1.1_all.deb Files: 27a8b421fcb523bc51465bc2df6ce41a 1123 web extra drupal6_6.12-1.1.dsc 70b27cfb05d2e909943c000e1a65faf5 19216 web extra drupal6_6.12-1.1.diff.gz b9b2e97d71348fc179dfc854f69b80d2 1109796 web extra drupal6_6.12-1.1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iEYEARECAAYFAkpSQzIACgkQHYflSXNkfP/hogCePjcmm4PldzxhCQgFOfA/pBqS 0mgAnijprXvXtzTLHcCc8FKNcZ6Gf4Nf =krwT -----END PGP SIGNATURE----- Accepted: drupal6_6.12-1.1.diff.gz to pool/main/d/drupal6/drupal6_6.12-1.1.diff.gz drupal6_6.12-1.1.dsc to pool/main/d/drupal6/drupal6_6.12-1.1.dsc drupal6_6.12-1.1_all.deb to pool/main/d/drupal6/drupal6_6.12-1.1_all.deb