mahara 1.2.6-2+squeeze3 source package in Debian

Changelog

mahara (1.2.6-2+squeeze3) stable-security; urgency=high


  * SECURITY UPDATE: fix unsanitised URIs in external feed block (XSS)
    - debian/patches/CVE-2011-2771.patch: upstream patch

  * SECURITY UPDATE: fix DoS when large or invalid images are uploaded
    - debian/patches/CVE-2011-2772.patch: upstream patch

  * SECURITY UPDATE: fix CSRF when adding a user to an institution
    - debian/patches/CVE-2011-2773.patch: upstream patch

  * SECURITY UPDATE: prevent masquerading as another user through MNet
    - debian/patches/mnet_masquerading.patch: upstream patch

 -- Francois Marier <email address hidden>  Wed, 02 Nov 2011 17:48:42 +1300

Upload details

Uploaded by:
Mahara Packaging
Uploaded to:
Squeeze
Original maintainer:
Mahara Packaging
Architectures:
all
Section:
web
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Downloads

File Size SHA-256 Checksum
mahara_1.2.6-2+squeeze3.dsc 1.9 KiB edab8fed9ebabc9320280b085a67e57e537bc51eebcb2b1f428d58c7c780bd1e
mahara_1.2.6.orig.tar.gz 4.3 MiB cc6a417fd2a346163e8c433a284aefc21c92ceea624b06be9eeb2084af9f8171
mahara_1.2.6-2+squeeze3.debian.tar.gz 29.0 KiB 7f7e2b4fc995053107ebe951befec873a2bc2a5662c1248bad5ec32b8f68f0a1

No changes file available.

Binary packages built by this source