mediawiki 1:1.11.2-2ubuntu0.5 source package in Ubuntu

Changelog

mediawiki (1:1.11.2-2ubuntu0.5) hardy-security; urgency=low

  * SECURITY UPDATE: MediaWiki was found to be vulnerable to login CSRF. An
    attacker who controls a user account on the target wiki can force the
    victim to login as the attacker, via a script on an external website.
    IMPORTANT: Fix includes a breaking change to the API login action. Any
    clients using it will need to be updated. (LP: #557159)
    - debian/patches/CSRF-no-CVE_rev-64680.patch
    - patch based on upstream SVN rev. 64680
    - http://lists.wikimedia.org/pipermail/mediawiki-announce/2010-April/000090.html
    - https://bugzilla.wikimedia.org/show_bug.cgi?id=23076
    - CVE-2010-1150
 -- Andreas Wenning <email address hidden>   Wed, 07 Apr 2010 12:08:55 +0200

Upload details

Uploaded by:
Andreas Wenning
Sponsored by:
Marc Deslauriers
Uploaded to:
Hardy
Original maintainer:
MOTU
Architectures:
any
Section:
web
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
mediawiki_1.11.2.orig.tar.gz 4.7 MiB 3516fd7f0069e30b1ed6b6fea3794047ac08baf3cf71085c6943605efafd806f
mediawiki_1.11.2-2ubuntu0.5.diff.gz 61.2 KiB 63e05c9defcd69fbb73343e94886ed86ee348a2eaa46ae42e7093ebaf5fb3325
mediawiki_1.11.2-2ubuntu0.5.dsc 934 bytes 432ff19187ef30dc2274b9c7374641d329d3068b4c69c982112202f10203ccb3

View changes file

Binary packages built by this source

mediawiki: No summary available for mediawiki in ubuntu hardy.

No description available for mediawiki in ubuntu hardy.

mediawiki-math: No summary available for mediawiki-math in ubuntu hardy.

No description available for mediawiki-math in ubuntu hardy.