-
spip (3.2.9-1) unstable; urgency=medium
* Critical security fixes, allowing identified authors to execute arbitrary
PHP code, and XSS
[ Matthieu Marcillaud ]
* Version 3.2.9
[ David Prévot ]
* Update mutualisation to 1.4.7
* Simplify gbp import-orig
-- David Prévot <email address hidden> Fri, 12 Feb 2021 14:33:59 -0400
-
spip (3.2.8-2) unstable; urgency=medium
* Document CVE IDs in previous changelog entries
* Use minify instead of uglifyjs (Closes: #979960)
* Update watch file format version to 4.
* Update Standards-Version to 4.5.1
* Drop d/lintian-overrides, syntax changed
-- David Prévot <email address hidden> Tue, 12 Jan 2021 09:11:37 -0400
-
spip (3.2.8-1) unstable; urgency=medium
* Critical security fix, allowing identified authors to execute arbitrary
PHP code
[ Matthieu Marcillaud ]
* Version 3.2.8
[ David Prévot ]
* Allow Apache to access some directories in /var/lib/spip/sites/
Thanks to Vincent
* Rename main branch to debian/latest (DEP-14)
* debian/watch: Adapt to lowercase spip
* debian/control:
- Set Rules-Requires-Root: no.
- Update standards version to 4.5.0, no changes needed
- Use debhelper-compat 13
* debian/rules:
- Simplify dh_link override
- Adapt get-orig-source to Git source
* debian/mutualisation:
- Update mutualisation as of r125427
- Update mutualisation to Git source
* debian/upstream/metadata:
- Set upstream metadata fields: Bug-Database, Bug-Submit.
- Fix URLs
* debian/copyright:
- Update Source
- Update years
-- David Prévot <email address hidden> Tue, 29 Sep 2020 17:03:05 -0400
-
spip (3.2.7-1) unstable; urgency=medium
* Critical security fix, allowing identified authors to inject content
into database
[ <email address hidden> ]
* SPIP 3.2.7
[ David Prévot ]
* Add CVE ID to previous changelog entry
* Update standards version to 4.4.1, no changes needed.
* Set upstream metadata fields: Repository, Repository-Browse.
-- David Prévot <email address hidden> Thu, 12 Dec 2019 10:02:58 -1000