Your message dated Wed, 12 Nov 2008 14:02:05 +0000
with message-id <[EMAIL PROTECTED]>
and subject line Bug#505326: fixed in typo3-src 4.2.3-1
has caused the Debian Bug report #505326,
regarding typo3-src: User account passwords cannot be changed in backend
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [EMAIL PROTECTED]
immediately.)


-- 
505326: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=505326
Debian Bug Tracking System
Contact [EMAIL PROTECTED] with problems
--- Begin Message ---
Package: typo3-src
Version: 4.2.1 4.2.2
Severity: grave
Justification: renders package unusable

This bug replaces all content entered into a password field in the backend
by the string "unknown". This leads to the problem, that passwords cannot
be changed anymore by users or admins.

-- System Information:
Debian Release: lenny/sid
  APT prefers testing
  APT policy: (650, 'testing'), (600, 'unstable')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.26-1-amd64 (SMP w/2 CPU cores)
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash



--- End Message ---
--- Begin Message ---
Source: typo3-src
Source-Version: 4.2.3-1

We believe that the bug you reported is fixed in the latest version of
typo3-src, which is due to be installed in the Debian FTP archive:

typo3-src-4.2_4.2.3-1_all.deb
  to pool/main/t/typo3-src/typo3-src-4.2_4.2.3-1_all.deb
typo3-src_4.2.3-1.diff.gz
  to pool/main/t/typo3-src/typo3-src_4.2.3-1.diff.gz
typo3-src_4.2.3-1.dsc
  to pool/main/t/typo3-src/typo3-src_4.2.3-1.dsc
typo3-src_4.2.3.orig.tar.gz
  to pool/main/t/typo3-src/typo3-src_4.2.3.orig.tar.gz
typo3_4.2.3-1_all.deb
  to pool/main/t/typo3-src/typo3_4.2.3-1_all.deb



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [EMAIL PROTECTED],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Christian Welzel <[EMAIL PROTECTED]> (supplier of updated typo3-src package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [EMAIL PROTECTED])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Tue, 11 Nov 2008 20:00:00 +0100
Source: typo3-src
Binary: typo3 typo3-src-4.2
Architecture: source all
Version: 4.2.3-1
Distribution: unstable
Urgency: high
Maintainer: Christian Welzel <[EMAIL PROTECTED]>
Changed-By: Christian Welzel <[EMAIL PROTECTED]>
Description: 
 typo3      - Powerful content management framework (Meta package)
 typo3-src-4.2 - Powerful content management framework (Core)
Closes: 505324 505325 505326
Changes: 
 typo3-src (4.2.3-1) unstable; urgency=high
 .
   * New upstream release.
     - fixes XSS vulnerability in Typo3 backendmodul "fileadmin" (Closes: 
505324)
     - fixes XSS vulnerability in Typo3 sysext "felogin" (Closes: 505325)
     - fixes the passwords are not changeable bug in the backend (Closes: 
505326)
   * added dependency on libjs-scriptaculous
Checksums-Sha1: 
 c30255c5aa4022d60c9228b6701afa0e67de21a0 980 typo3-src_4.2.3-1.dsc
 6e0a984536108be9aa63cb5a97d384ec18d4e99b 8364774 typo3-src_4.2.3.orig.tar.gz
 d55be4be39f4315c8b4aa37fc06d0f122994dd54 106873 typo3-src_4.2.3-1.diff.gz
 c39953c7063f3f5c090ccd3406615728b85ddead 130652 typo3_4.2.3-1_all.deb
 3d5d8505a4354d4be6e6fe7bba17ab36dcc90eba 8414616 typo3-src-4.2_4.2.3-1_all.deb
Checksums-Sha256: 
 f01f9b981b86ca727771a638696c1ffcdbed368cbadaa919df9d0a3b7c692d33 980 
typo3-src_4.2.3-1.dsc
 b0f9d327c0bafca0b5d8783f3291a524a2f99ecd6ac5f91fe4377c336eabb4de 8364774 
typo3-src_4.2.3.orig.tar.gz
 a0ebfcaffae2b3a44f9c557d5f2967f42016a78d21966a31bbda24c1b7d90e0a 106873 
typo3-src_4.2.3-1.diff.gz
 78cd23330acba8b977fda27143dceb3694dd4f005c804b934d4b04dde55cbb17 130652 
typo3_4.2.3-1_all.deb
 dfeb1dcf58cb937220e4f531639bc40a69528fcf4f3fd49b326113f19503d07a 8414616 
typo3-src-4.2_4.2.3-1_all.deb
Files: 
 085c3a28d9cedd222a82d7b16bcd2ffa 980 web optional typo3-src_4.2.3-1.dsc
 50a60a1ebf3f3d62b6618cb01e18eed9 8364774 web optional 
typo3-src_4.2.3.orig.tar.gz
 594fdf625ec862455d21bfcd5d8c60e4 106873 web optional typo3-src_4.2.3-1.diff.gz
 a2321802d9b2d1b725a5051ca430b025 130652 web optional typo3_4.2.3-1_all.deb
 55e7a648dcac41ec0240acc829d6a40e 8414616 web optional 
typo3-src-4.2_4.2.3-1_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFJGt+8UHLQNqxYNSARAvolAKDFFLhGn1AtjSlgDHNHf2BC6NnL4QCfTX+z
9bPCVOdgf35Cv5wjgX3k63k=
=NncE
-----END PGP SIGNATURE-----



--- End Message ---

Reply via email to