[Pkg-mediawiki-devel] Bug#650434: mediawiki: two security issues (fixed in 1.17.1)

Jonathan Wiltshire jmw at debian.org
Sun Dec 18 16:34:51 UTC 2011


On Tue, Dec 06, 2011 at 08:01:18PM +0100, Moritz Muehlenhoff wrote:
> What's the status of the following for stable?
> http://security-tracker.debian.org/tracker/CVE-2011-1578
> http://security-tracker.debian.org/tracker/CVE-2011-1579
> http://security-tracker.debian.org/tracker/CVE-2011-1580
> 
> Otherwise, please upload. You can allocate the DSA ID yourself by running
> bin/gen-DSA as outlined here and commit the new blob in data/DSA/list:
> http://wiki.debian.org/DebianSecurity/AdvisoryCreation/SecSecr

New diffs attached, please review.

lenny9:
 debian/patches/CVE-2011-1578.patch     |  135 +++++++++++++++++++++++++++++++++
 debian/patches/CVE-2011-1579.patch     |   81 +++++++++++++++++++
 debian/patches/CVE-2011-1580.patch     |   52 ++++++++++++
 debian/patches/CVE-2011-1587.patch     |   37 +++++++++
 debian/patches/CVE-2011-4360.patch     |   31 +++++++
 debian/patches/CVE-2011-4361.patch     |   35 ++++++++
 mediawiki-1.12.0/debian/changelog      |   14 +++
 mediawiki-1.12.0/debian/patches/series |    6 +
 8 files changed, 391 insertions(+)

squeeze2:
 changelog                   |   14 ++++
 patches/CVE-2011-1578.patch |  134 ++++++++++++++++++++++++++++++++++++++++++++
 patches/CVE-2011-1579.patch |   80 ++++++++++++++++++++++++++
 patches/CVE-2011-1580.patch |   68 ++++++++++++++++++++++
 patches/CVE-2011-1587.patch |   37 ++++++++++++
 patches/CVE-2011-4360.patch |   31 ++++++++++
 patches/CVE-2011-4361.patch |   35 +++++++++++
 patches/series              |    6 +
 8 files changed, 405 insertions(+)

Thanks,

-- 
Jonathan Wiltshire                                      jmw at debian.org
Debian Developer                         http://people.debian.org/~jmw

4096R: 0xD3524C51 / 0A55 B7C5 1223 3942 86EC  74C3 5394 479D D352 4C51
-------------- next part --------------
A non-text attachment was scrubbed...
Name: mw_lenny9.diff
Type: text/x-diff
Size: 17007 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-mediawiki-devel/attachments/20111218/ba098e60/attachment-0002.diff>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: mw_squeeze2.diff
Type: text/x-diff
Size: 18675 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-mediawiki-devel/attachments/20111218/ba098e60/attachment-0003.diff>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: Digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-mediawiki-devel/attachments/20111218/ba098e60/attachment-0001.pgp>


More information about the Pkg-mediawiki-devel mailing list