Your message dated Thu, 09 Jun 2011 18:48:15 +0000
with message-id <e1qukh9-0003me...@franck.debian.org>
and subject line Bug#629937: fixed in movabletype-opensource 4.3.6.1+dfsg-1
has caused the Debian Bug report #629937,
regarding Unspecified security vulnerabilities fixed in 4.361
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
629937: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=629937
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: movabletype-opensource
Version: 4.3.6+dfsg-1
Severity: grave
Tags: security
Justification: user security hole

As reported in
<http://www.movabletype.org/2011/06/movable_type_511_and_5051_4361_security_updates.html>

Quote:

"Movable Type 5.11, 5.051, 4.361 were released as mandatory security updates. 
These updates resolve multiple vulnerabilities discovered in Movable Type 5.x 
and Movable Type 4.x. All users must upgrade to this latest release 
immediately."

"A remote attacker could create, read or modify the contents in the system 
under certain circumstances."

-- 
Dominic Hargreaves | http://www.larted.org.uk/~dom/
PGP key 5178E2A5 from the.earth.li (keyserver,web,email)



--- End Message ---
--- Begin Message ---
Source: movabletype-opensource
Source-Version: 4.3.6.1+dfsg-1

We believe that the bug you reported is fixed in the latest version of
movabletype-opensource, which is due to be installed in the Debian FTP archive:

movabletype-opensource_4.3.6.1+dfsg-1.debian.tar.gz
  to 
main/m/movabletype-opensource/movabletype-opensource_4.3.6.1+dfsg-1.debian.tar.gz
movabletype-opensource_4.3.6.1+dfsg-1.dsc
  to main/m/movabletype-opensource/movabletype-opensource_4.3.6.1+dfsg-1.dsc
movabletype-opensource_4.3.6.1+dfsg-1_all.deb
  to main/m/movabletype-opensource/movabletype-opensource_4.3.6.1+dfsg-1_all.deb
movabletype-opensource_4.3.6.1+dfsg.orig.tar.gz
  to 
main/m/movabletype-opensource/movabletype-opensource_4.3.6.1+dfsg.orig.tar.gz
movabletype-plugin-core_4.3.6.1+dfsg-1_all.deb
  to 
main/m/movabletype-opensource/movabletype-plugin-core_4.3.6.1+dfsg-1_all.deb
movabletype-plugin-zemanta_4.3.6.1+dfsg-1_all.deb
  to 
main/m/movabletype-opensource/movabletype-plugin-zemanta_4.3.6.1+dfsg-1_all.deb



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 629...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Dominic Hargreaves <d...@earth.li> (supplier of updated movabletype-opensource 
package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Thu, 09 Jun 2011 19:28:48 +0100
Source: movabletype-opensource
Binary: movabletype-opensource movabletype-plugin-core 
movabletype-plugin-zemanta
Architecture: source all
Version: 4.3.6.1+dfsg-1
Distribution: unstable
Urgency: high
Maintainer: Dominic Hargreaves <d...@earth.li>
Changed-By: Dominic Hargreaves <d...@earth.li>
Description: 
 movabletype-opensource - A well-known blogging engine
 movabletype-plugin-core - Core Movable Type plugins
 movabletype-plugin-zemanta - Zemanta Movable Type plugin
Closes: 629937
Changes: 
 movabletype-opensource (4.3.6.1+dfsg-1) unstable; urgency=high
 .
   * New upstream release
     - fixes unspecified security vulnerabilities (closes: #629937)
   * Update Standards-Version (no changes)
Checksums-Sha1: 
 aac904d9b4593dd25e5240b6428574166becfbe8 1289 
movabletype-opensource_4.3.6.1+dfsg-1.dsc
 26a04b6865ab536eaaa27c2c3a9668788f3d11ab 4738687 
movabletype-opensource_4.3.6.1+dfsg.orig.tar.gz
 90008def7317444ad1e3e4e073f016df23efe38d 28652 
movabletype-opensource_4.3.6.1+dfsg-1.debian.tar.gz
 1caa2d6af365936be319401e0b98d91ff8562551 2896614 
movabletype-opensource_4.3.6.1+dfsg-1_all.deb
 90575e027005468be931b0a617fdef6193450fd7 170400 
movabletype-plugin-core_4.3.6.1+dfsg-1_all.deb
 23fbe1b877cbb6469abf7abda312f5cb89fbc49f 14728 
movabletype-plugin-zemanta_4.3.6.1+dfsg-1_all.deb
Checksums-Sha256: 
 87f5bd78e27bfb08e8b0010fd6ab24f33e3055e27d4b9c716124315dae1244eb 1289 
movabletype-opensource_4.3.6.1+dfsg-1.dsc
 1bd2e3524435b2c62723ab0a8f33d2121d7865bb22b1ee5aa22e2c6772954ffd 4738687 
movabletype-opensource_4.3.6.1+dfsg.orig.tar.gz
 2703b73ba3a935890240ff10ea54920fad8150ae0760fff4ca968257859489e5 28652 
movabletype-opensource_4.3.6.1+dfsg-1.debian.tar.gz
 525bee4831c251ceb4f7c81418b3f6f5bf0c659c14092dc7d158c1a932c0102a 2896614 
movabletype-opensource_4.3.6.1+dfsg-1_all.deb
 83382a452c8d9df6ae85429cf1847049d421c2037661ffb60f34e4bbb3730e07 170400 
movabletype-plugin-core_4.3.6.1+dfsg-1_all.deb
 aff5d49aeebfee27aa5da4e4be01c5f625e601ce26511629d45f1e89f8213854 14728 
movabletype-plugin-zemanta_4.3.6.1+dfsg-1_all.deb
Files: 
 ca26e3ad9b556e2b630d30d9cf66594a 1289 web optional 
movabletype-opensource_4.3.6.1+dfsg-1.dsc
 8da565b391b9122a14090d50503b063f 4738687 web optional 
movabletype-opensource_4.3.6.1+dfsg.orig.tar.gz
 03fba8811b3789f9225d200cfc5b447a 28652 web optional 
movabletype-opensource_4.3.6.1+dfsg-1.debian.tar.gz
 e3bee2f52beef2762a50cbc89f7b8a4b 2896614 web optional 
movabletype-opensource_4.3.6.1+dfsg-1_all.deb
 87b2f50f36fd60c6cd603b8e7e9dfcc0 170400 web optional 
movabletype-plugin-core_4.3.6.1+dfsg-1_all.deb
 42ae92ea29a628059bbb6bfec9c09e86 14728 web optional 
movabletype-plugin-zemanta_4.3.6.1+dfsg-1_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)

iD8DBQFN8REXYzuFKFF44qURAqWtAKDAjR7BotITmJrbqNV2ny4eDoZWLACg1Rg5
QQ+Tkt4q4DQhQ1e3cz5t2JQ=
=BoaF
-----END PGP SIGNATURE-----



--- End Message ---

Reply via email to