r726 - zope2.9/branches/etch/debian

Jérémy Bobbio lunar at alioth.debian.org
Wed Mar 28 23:47:39 UTC 2007


Author: lunar
Date: 2007-03-28 22:47:39 +0000 (Wed, 28 Mar 2007)
New Revision: 726

Modified:
   zope2.9/branches/etch/debian/changelog
Log:
Update changelog for 2.9.6-4etch1.


Modified: zope2.9/branches/etch/debian/changelog
===================================================================
--- zope2.9/branches/etch/debian/changelog	2007-03-28 22:46:38 UTC (rev 725)
+++ zope2.9/branches/etch/debian/changelog	2007-03-28 22:47:39 UTC (rev 726)
@@ -1,3 +1,12 @@
+zope2.9 (2.9.6-4etch1) testing-proposed-updates; urgency=high
+
+  * SECURITY UPDATE: Prevent privileges elevation through misuse of HTTP GET.
+    Refs: http://www.zope.org/Products/Zope/Hotfix-2007-03-20/announcement/view
+          CVE-2007-0240
+    (Closes: #415564)
+
+ -- Jérémy Bobbio <lunar at debian.org>  Wed, 28 Mar 2007 23:52:17 +0200
+
 zope2.9 (2.9.6-4) unstable; urgency=medium
 
   * debian/patches/webdav.dpatch: applied patch to correctly quote resource




More information about the pkg-zope-commits mailing list