Your message dated Fri, 22 Jan 2010 19:54:12 +0000
with message-id <e1nypa8-0005cr...@ries.debian.org>
and subject line Bug#565406: fixed in dokuwiki 0.0.20080505-4+lenny1
has caused the Debian Bug report #565406,
regarding ACL can be edited
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
565406: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=565406
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: dokuwiki
Version: 0.0.20080505-4
Tags: security, patch, fixed-upstream
Severity: serious
A major security problem allows to edit the ACL, thus gaining access to a
closed wiki. See
[bugtracker] for description and patch. The problem is fixed in version
2009-12-25b, I’ll upload a
package for this version to [mentors] in a few hours.
Regards,
Adrian Lang
[bugtracker] http://bugs.splitbrain.org/index.php?do=details&task_id=1847
[mentors]
http://mentors.debian.net/cgi-bin/sponsor-pkglist?action=details;package=dokuwiki
--- End Message ---
--- Begin Message ---
Source: dokuwiki
Source-Version: 0.0.20080505-4+lenny1
We believe that the bug you reported is fixed in the latest version of
dokuwiki, which is due to be installed in the Debian FTP archive:
dokuwiki_0.0.20080505-4+lenny1.diff.gz
to main/d/dokuwiki/dokuwiki_0.0.20080505-4+lenny1.diff.gz
dokuwiki_0.0.20080505-4+lenny1.dsc
to main/d/dokuwiki/dokuwiki_0.0.20080505-4+lenny1.dsc
dokuwiki_0.0.20080505-4+lenny1_all.deb
to main/d/dokuwiki/dokuwiki_0.0.20080505-4+lenny1_all.deb
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to 565...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Giuseppe Iuculano <iucul...@debian.org> (supplier of updated dokuwiki package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@debian.org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Fri, 22 Jan 2010 15:57:35 +0100
Source: dokuwiki
Binary: dokuwiki
Architecture: source all
Version: 0.0.20080505-4+lenny1
Distribution: stable-security
Urgency: high
Maintainer: Mohammed Adnène Trojette <adn+...@diwi.org>
Changed-By: Giuseppe Iuculano <iucul...@debian.org>
Description:
dokuwiki - standards compliant simple to use wiki
Closes: 565406
Changes:
dokuwiki (0.0.20080505-4+lenny1) stable-security; urgency=high
.
* Non-maintainer upload by the Security Team.
* Fixed CVE-2010-0287, CVE-2010-0288, CVE-2010-0289 (Closes: #565406)
Checksums-Sha1:
95f322e7d9068b4d60c2468488be1d9e78fb0b37 1104
dokuwiki_0.0.20080505-4+lenny1.dsc
8e874ec8e7b223b917fec4835387d98204d99f49 1430707
dokuwiki_0.0.20080505.orig.tar.gz
e3382984ec64098907ac15667472849b91391435 34110
dokuwiki_0.0.20080505-4+lenny1.diff.gz
c0df30648e9e760071ec3a266c190bd6df496547 1481684
dokuwiki_0.0.20080505-4+lenny1_all.deb
Checksums-Sha256:
c4425c6918edee64ad868a7839c20623ebd6915dc305bb875b294ad3d6f01802 1104
dokuwiki_0.0.20080505-4+lenny1.dsc
30aa5fb52a687a04409d6f938bbf1337bb68437eba9aac363b5e01d19855121c 1430707
dokuwiki_0.0.20080505.orig.tar.gz
3d8f90c71e92f61c505497679334e647346ebdcdec06a3db2a7955c8e86d344d 34110
dokuwiki_0.0.20080505-4+lenny1.diff.gz
cafad89c64d3672a21509724eff706dfb22f5bce1ab8f89e979ca557883cf776 1481684
dokuwiki_0.0.20080505-4+lenny1_all.deb
Files:
87bff5f8b651532561c5c6b0454ef37a 1104 web optional
dokuwiki_0.0.20080505-4+lenny1.dsc
1a70a2ab847b704b629cbbe212ce9a00 1430707 web optional
dokuwiki_0.0.20080505.orig.tar.gz
0dc35149b193e911eec750841a139506 34110 web optional
dokuwiki_0.0.20080505-4+lenny1.diff.gz
605eb57368b9eec17cb48b6cbdcf1d0b 1481684 web optional
dokuwiki_0.0.20080505-4+lenny1_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)
iEYEARECAAYFAktZwR8ACgkQNxpp46476aqaMgCgnzB/ETC2DcEHYJFZbkw1xOo+
ksMAn2imb4UzsmxYi0qCBhl7fZ0busrP
=rdu2
-----END PGP SIGNATURE-----
--- End Message ---