Your message dated Wed, 02 Apr 2014 21:21:38 +0000 with message-id <e1wvsbk-0005xb...@franck.debian.org> and subject line Bug#743252: fixed in shaarli 0.0.41~beta~dfsg2-4 has caused the Debian Bug report #743252, regarding Multiples XSS in index.php (CVE-2013-7351) to be marked as done.
This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 743252: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=743252 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems
--- Begin Message ---Package: shaarli Version: 0.0.41~beta~dfsg2-3 Severity: grave Tags: security patch upstream Control: forward -1 https://github.com/sebsauvage/Shaarli/issues/134 Control: tag -1 fixed-upstream Hi, A security issue has been fixed a few months ago: https://github.com/sebsauvage/Shaarli/commit/53da201749f8f362323ef278bf338f1d9f7a925a Thanks in advance for updating the Debian package. Regards David -- System Information: Debian Release: jessie/sid APT prefers unstable APT policy: (500, 'unstable'), (500, 'testing'), (500, 'stable'), (500, 'oldstable'), (100, 'experimental') Architecture: amd64 (x86_64) Foreign Architectures: i386 Kernel: Linux 3.14-rc7-amd64 (SMP w/1 CPU core) Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/dash
signature.asc
Description: Digital signature
--- End Message ---
--- Begin Message ---Source: shaarli Source-Version: 0.0.41~beta~dfsg2-4 We believe that the bug you reported is fixed in the latest version of shaarli, which is due to be installed in the Debian FTP archive. A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to 743...@bugs.debian.org, and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Emilien Klein <emilien+deb...@klein.st> (supplier of updated shaarli package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing ftpmas...@ftp-master.debian.org) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Tue, 01 Apr 2014 21:26:06 +0200 Source: shaarli Binary: shaarli Architecture: source all Version: 0.0.41~beta~dfsg2-4 Distribution: unstable Urgency: low Maintainer: Emilien Klein <emilien+deb...@klein.st> Changed-By: Emilien Klein <emilien+deb...@klein.st> Description: shaarli - Personal, minimalist, super-fast and no-database Delicious clone Closes: 743252 Changes: shaarli (0.0.41~beta~dfsg2-4) unstable; urgency=low . * Fix multiple XSS in index.php (CVE-2013-7351) (Closes: #743252) This is already fixed upstream: https://github.com/sebsauvage/Shaarli/issues/134 * Update Standards-Version to 3.9.5 Checksums-Sha1: 0f02cd00d1026e8be617b852bc0a2ec9ccb7f2df 1972 shaarli_0.0.41~beta~dfsg2-4.dsc 9dbc6aa1ee54f2ce0a37fdf81f166b77bf2c2022 8760 shaarli_0.0.41~beta~dfsg2-4.debian.tar.xz c2a28ca5d5b73306ac5c82e1105892fa4605d303 251518 shaarli_0.0.41~beta~dfsg2-4_all.deb Checksums-Sha256: 278977598cb73c65111bffb4a40ef3ba26c0bb0dc69c61f8e1a66f9df8474d86 1972 shaarli_0.0.41~beta~dfsg2-4.dsc b3dcac156a6184b9cd8e560e3e07e18153fc1572421c306f0a81fccb5e35a37a 8760 shaarli_0.0.41~beta~dfsg2-4.debian.tar.xz 512dd7da83ae242e1101939708fb6b98e0acc6ba3306dc249305812a2c29133b 251518 shaarli_0.0.41~beta~dfsg2-4_all.deb Files: 7ac13baeb69192e54caaf056bfe721e5 1972 web optional shaarli_0.0.41~beta~dfsg2-4.dsc b1936c813c1e41d12dcc5a41e984c95c 8760 web optional shaarli_0.0.41~beta~dfsg2-4.debian.tar.xz a81b0bf99cd4d9a34b446f771f179b18 251518 web optional shaarli_0.0.41~beta~dfsg2-4_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBAgAGBQJTPGy5AAoJEK4MhLsKI2jwy7EQAIz9vq9DrvRsaN0TYAHXgJpH J+C76IAZFYRzRelHN5bVMeNbvvYjcjjWgAkM1lnY0Dw1sWQsJgxTR1Y6/omJpxpc c+JEaP5Z7r6MI8nA2FQ8Tti4TcvvQYCYPpLfqZA6NlYVsewtOvt3bFjAGxqih2I8 KGBlKRjD+EzZEjsA8+Iz+ECJ4IOEQudLcuTGyDrJE5x20m+MoRQ244GiVtjH3rUP cBYX7fxZyOXJHgWjph6tkVEA7HYEtOIa+RpG4DA3WYg2BPjpVgcJsWXwZKoCu4wZ UtKyn4hthst8jT7Mt7PpjHPkqQhWiIFZUguoSVSYCBKXJ7nKyvYphAjcnuPNwECn wIbkBGWbBWi0WcTZISsO9MqICQhnSvhqvoR29p2XRX1qS5LV+vLr0uH0P+uM9+qQ AExJy48i59yafM/Ak98a31X/NhJElNgHREsFoieutbT6nQwkdqo4g3gOpcy36KF/ s2q1tWSzlDhXzrzPFzhkFoMex4QulyB5SPxQWyvELib6cEO87AnsfaZO4TABMzkC JRD6mbgSAPmcvUWmalVDkW5AAtjgc1JBie6LEsjTmKvYxePVASDdB4lVHmiZruU9 iLZ/Zy1FqCPgy3gxx8q8EtU4Bpm58LuU6hB32F3XLMq5p1XpXZ+wgW0iRNynB0wK BW0XEArigoRhiMO1kjB+ =dFxj -----END PGP SIGNATURE-----
--- End Message ---