Your message dated Wed, 02 Apr 2014 21:21:38 +0000
with message-id <e1wvsbk-0005xb...@franck.debian.org>
and subject line Bug#743252: fixed in shaarli 0.0.41~beta~dfsg2-4
has caused the Debian Bug report #743252,
regarding Multiples XSS in index.php (CVE-2013-7351)
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
743252: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=743252
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: shaarli
Version: 0.0.41~beta~dfsg2-3
Severity: grave
Tags: security patch upstream
Control: forward -1 https://github.com/sebsauvage/Shaarli/issues/134
Control: tag -1 fixed-upstream

Hi,

A security issue has been fixed a few months ago:

https://github.com/sebsauvage/Shaarli/commit/53da201749f8f362323ef278bf338f1d9f7a925a

Thanks in advance for updating the Debian package.

Regards

David

-- System Information:
Debian Release: jessie/sid
  APT prefers unstable
  APT policy: (500, 'unstable'), (500, 'testing'), (500, 'stable'), (500, 
'oldstable'), (100, 'experimental')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 3.14-rc7-amd64 (SMP w/1 CPU core)
Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Attachment: signature.asc
Description: Digital signature


--- End Message ---
--- Begin Message ---
Source: shaarli
Source-Version: 0.0.41~beta~dfsg2-4

We believe that the bug you reported is fixed in the latest version of
shaarli, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 743...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Emilien Klein <emilien+deb...@klein.st> (supplier of updated shaarli package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Tue, 01 Apr 2014 21:26:06 +0200
Source: shaarli
Binary: shaarli
Architecture: source all
Version: 0.0.41~beta~dfsg2-4
Distribution: unstable
Urgency: low
Maintainer: Emilien Klein <emilien+deb...@klein.st>
Changed-By: Emilien Klein <emilien+deb...@klein.st>
Description: 
 shaarli    - Personal, minimalist, super-fast and no-database Delicious clone
Closes: 743252
Changes: 
 shaarli (0.0.41~beta~dfsg2-4) unstable; urgency=low
 .
   * Fix multiple XSS in index.php (CVE-2013-7351) (Closes: #743252)
       This is already fixed upstream:
       https://github.com/sebsauvage/Shaarli/issues/134
   * Update Standards-Version to 3.9.5
Checksums-Sha1: 
 0f02cd00d1026e8be617b852bc0a2ec9ccb7f2df 1972 shaarli_0.0.41~beta~dfsg2-4.dsc
 9dbc6aa1ee54f2ce0a37fdf81f166b77bf2c2022 8760 
shaarli_0.0.41~beta~dfsg2-4.debian.tar.xz
 c2a28ca5d5b73306ac5c82e1105892fa4605d303 251518 
shaarli_0.0.41~beta~dfsg2-4_all.deb
Checksums-Sha256: 
 278977598cb73c65111bffb4a40ef3ba26c0bb0dc69c61f8e1a66f9df8474d86 1972 
shaarli_0.0.41~beta~dfsg2-4.dsc
 b3dcac156a6184b9cd8e560e3e07e18153fc1572421c306f0a81fccb5e35a37a 8760 
shaarli_0.0.41~beta~dfsg2-4.debian.tar.xz
 512dd7da83ae242e1101939708fb6b98e0acc6ba3306dc249305812a2c29133b 251518 
shaarli_0.0.41~beta~dfsg2-4_all.deb
Files: 
 7ac13baeb69192e54caaf056bfe721e5 1972 web optional 
shaarli_0.0.41~beta~dfsg2-4.dsc
 b1936c813c1e41d12dcc5a41e984c95c 8760 web optional 
shaarli_0.0.41~beta~dfsg2-4.debian.tar.xz
 a81b0bf99cd4d9a34b446f771f179b18 251518 web optional 
shaarli_0.0.41~beta~dfsg2-4_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=dFxj
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to