Bug#553644: marked as done (jetty: multiple vulnerabilities)

2009-12-23 Thread Debian Bug Tracking System
Your message dated Wed, 23 Dec 2009 17:38:34 + with message-id and subject line Bug#553644: fixed in jetty 6.1.22-1 has caused the Debian Bug report #553644, regarding jetty: multiple vulnerabilities to be marked as done. This means that you claim that the problem has been dealt with. If

Bug#553644:

2009-12-15 Thread Pablo Duboue
fixed 553644 6.1.22 thanks (resending as I forgot to CC: the BTS) We don't ship the test WebApps enabled by default (from what I can gather, it seems we don't ship them at all) and this new version fixes the remaining XSS vulnerabilities (I double checked the fix is in). This bug will be closed

Processed: Bug#553644

2009-12-15 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > fixed 553644 6.1.22 Bug #553644 [src:jetty] jetty: multiple vulnerabilities The source jetty and version do not appear to match any binary packages Bug Marked as fixed in versions jetty/6.1.22. > thanks Stopping processing here. Please c

Bug#553644:

2009-12-15 Thread Pablo Duboue
fixed 6.1.22 thanks We don't ship the test WebApps enabled by default (from what I can gather, it seems we don't ship them at all) and this new version fixes the remaining XSS vulnerabilities (I double checked the fix is in). This bug will be closed when the new version gets uploaded. -- To U

Bug#553644: jetty: multiple vulnerabilities

2009-11-01 Thread Raphael Geissert
Source: jetty Severity: grave Tags: security Hi, Multiple vulnerabilities have been discovered in jetty 6.x and 7.x. The original advisory can be found at http://www.ush.it/team/ush/hack-jetty6x7x/jetty-adv.txt When you fix this issue, please mention the CVE ids in the changelog, if they are