moin 1.5.8-5.1ubuntu2.2 source package in Ubuntu

Changelog

moin (1.5.8-5.1ubuntu2.2) hardy-security; urgency=low

  * SECURITY UPDATE: cross-site scripting via rename parameter and
    basename variable
    - debian/patches/30001_CVE-2009-0260.patch: use wikiutil.escape() in
      MoinMoin/action/AttachFile.py
    - CVE-2009-0260
  * SECURITY UPDATE: cross-site scripting via content variable
    - debian/pathes/30002_antispam_xss_fix.patch: use wikiutil.escape()
      in MoinMoin/util/antispam.py
    - CVE-2009-XXXX
  * SECURITY UPDATE: cross-site scripting in login
    - debian/patches/30003_CVE-2008-0780.patch: update action/login.py to use
      wikiutil.escape() for name
    - CVE-2008-0780
    - LP: #200897
  * SECURITY UPDATE: cross-site scripting in AttachFile
    - debian/patches/30004_CVE-2008-0781.patch: use wikiutil.escape() for
      msg, pagename and target filenames in MoinMoin/action/AttachFile.py
    - CVE-2008-0781
  * SECURITY UPDATE: directory traversal vulnerability via MOIN_ID in userform
      cookie action
    - debian/patches/30005_CVE-2008-0782.patch: update MoinMoin/user.py to
      check USERID via the new id_sanitycheck() function
    - CVE-2008-0782

 -- Jamie Strandboge <email address hidden>   Thu, 29 Jan 2009 17:37:53 -0600

Upload details

Uploaded by:
Jamie Strandboge
Uploaded to:
Hardy
Original maintainer:
Ubuntu Development Team
Architectures:
all
Section:
net
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Hardy: [FULLYBUILT] i386

Downloads

File Size SHA-256 Checksum
moin_1.5.8.orig.tar.gz 4.2 MiB 569c9b4f7b2cf411718a3ac5e6427c1babacbaf1b085276f822d8d08040e4a8f
moin_1.5.8-5.1ubuntu2.2.diff.gz 59.9 KiB 8b9a64713e6c8c1315f40fa3c1e3e266f2872da879f8e85651716baeaafbe117
moin_1.5.8-5.1ubuntu2.2.dsc 989 bytes 7dc615dba9b6266fde7464f23b3148ec3d3c61c0ebc769284e3a553b37bdede7

View changes file

Binary packages built by this source

moinmoin-common: No summary available for moinmoin-common in ubuntu hardy.

No description available for moinmoin-common in ubuntu hardy.

python-moinmoin: No summary available for python-moinmoin in ubuntu hardy.

No description available for python-moinmoin in ubuntu hardy.