[Sync Request] Sync mediawiki1.7 (1.7.1-9) from Debian unstable (main)

Bug #87088 reported by Michael Bienia
4
Affects Status Importance Assigned to Milestone
mediawiki1.7 (Ubuntu)
Fix Released
Undecided
Unassigned

Bug Description

Binary package hint: mediawiki1.7

Please sync mediawiki1.7 (1.7.1-9) from Debian unstable (main).

The Ubuntu package has no changes.

Thanks.

Changelog:

mediawiki1.7 (1.7.1-9) unstable; urgency=high

   * Backported security fix from 1.7.3 release:
   "An XSS injection vulnerability based on Microsoft Internet Explorer's UTF-7
   charset autodetection was located in the AJAX support module, affecting
   MSIE users on MediaWiki 1.6.x and up when the optional setting $wgUseAjax is
   enabled."
   See:
   http://svn.wikimedia.org/svnroot/mediawiki/tags/REL1_7_3/phase3/RELEASE-NOTES

 -- Romain Beauxis <email address hidden> Wed, 21 Feb 2007 11:23:49 +0100

mediawiki1.7 (1.7.1-8) unstable; urgency=low

   * Added debconf translations, thanks to contributors!
   Closes: #408607, #410987

 -- Romain Beauxis <email address hidden> Tue, 20 Feb 2007 02:41:36 +0100

mediawiki1.7 (1.7.1-7) unstable; urgency=low

   * Removed problematic link in /etc/mediawiki1.7.
   See #388616 and #393962. Added a readme file to explain
   the situation instead.
   Closes: #393962

 -- Romain Beauxis <email address hidden> Fri, 9 Feb 2007 00:36:38 +0100

Revision history for this message
Martin Pitt (pitti) wrote : Fixed

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

 status fixreleased

[Updating] mediawiki1.7 (1.7.1-6 [Ubuntu] < 1.7.1-9 [Debian])
 * Trying to add mediawiki1.7...
  - <mediawiki1.7_1.7.1-9.diff.gz: downloading from http://ftp.debian.org/debian/>
  - <mediawiki1.7_1.7.1.orig.tar.gz: already in distro - downloading from librarian>
  - <mediawiki1.7_1.7.1-9.dsc: downloading from http://ftp.debian.org/debian/>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFF3qPWDecnbV4Fd/IRAha7AJ95bcNuLaEDhIfFE6tZTrRVT2ls5gCfU99Y
EtgkjQnIvd96Wj1ivu8lP0Q=
=sKAB
-----END PGP SIGNATURE-----

Changed in mediawiki1.7:
status: Unconfirmed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.