Please sync roundcube 0.1~rc2-6 (universe) from Debian unstable (main)

Bug #189933 reported by Michael Bienia
4
Affects Status Importance Assigned to Milestone
roundcube (Ubuntu)
Fix Released
Wishlist
Unassigned

Bug Description

Binary package hint: roundcube

Please sync roundcube 0.1~rc2-6 (universe) from Debian unstable (main).
Changelog since current hardy version 0.1~rc2-4:

roundcube (0.1~rc2-6) unstable; urgency=high

  [ Vincent Bernat ]
  * Bug fix: "CVE-2007-6321: Cross-site scripting (XSS) vulnerability",
    thanks to Micah Anderson (Closes: #455840). The patch is from
    http://lists.roundcube.net/mail-archive/dev/2007-12/0000038.html and
    provided by Robin Elfrink. It has been modified with some functions
    stolen from Squirrelmail.
  * Finnish debconf template, thanks to Esko Arajärvi (Closes: #458244).

  [ Romain Beauxis ]
  * Added DM-Upload-Allowed: yes to control file.
  * Moved po-debconf to Build-Dep since it is needed for clean
    target. Thanks to lintian.

 -- Romain Beauxis <email address hidden> Sat, 26 Jan 2008 03:26:42 +0100

roundcube (0.1~rc2-5) unstable; urgency=low

  * Deal with old /etc/logrotate.d/roundcube by removing it if left
    untouched (Closes: #456546). Also deal with /etc/default/roundcube and
    /etc/cron.daily/roundcube.

 -- Vincent Bernat <email address hidden> Tue, 18 Dec 2007 23:02:46 +0100

Michael Bienia (geser)
Changed in roundcube:
importance: Undecided → Wishlist
status: New → Confirmed
Revision history for this message
Martin Pitt (pitti) wrote : Synced

Package(s) synced.

Changed in roundcube:
status: Confirmed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.