Your message dated Wed, 17 Jun 2009 01:17:07 +0000
with message-id <e1mgjlz-0006ga...@ries.debian.org>
and subject line Bug#526528: fixed in dokuwiki 0.0.20090214b-1
has caused the Debian Bug report #526528,
regarding dokuwiki: no source code for multipleUpload.swf
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
526528: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=526528
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: dokuwiki
Severity: serious
Version: 0.0.20090214-1

Hi,

While the copyright file claims that the package is licenced under the terms 
of the GNU GPL v2 there's no source code of multipleUpload.swf

Paul Wise did some research (see #516250)  some time ago and it looks like it 
comes from [1] (or a different version of it, since the md5sums don't match) 
which does provide the source code.

In the eventuality that it comes from [1]:
a) there's no copyright/licence information for it
b) there would be a copyright violation because Andreas Gohr claims its his 
work.

Whatever case it is, it is serious.

[1] http://blog.vixiom.com/uploads/multiFlashRailsFileUpload.zip

Cheers,
-- 
Raphael Geissert - Debian Maintainer
www.debian.org - get.debian.net



--- End Message ---
--- Begin Message ---
Source: dokuwiki
Source-Version: 0.0.20090214b-1

We believe that the bug you reported is fixed in the latest version of
dokuwiki, which is due to be installed in the Debian FTP archive:

dokuwiki_0.0.20090214b-1.diff.gz
  to pool/main/d/dokuwiki/dokuwiki_0.0.20090214b-1.diff.gz
dokuwiki_0.0.20090214b-1.dsc
  to pool/main/d/dokuwiki/dokuwiki_0.0.20090214b-1.dsc
dokuwiki_0.0.20090214b-1_all.deb
  to pool/main/d/dokuwiki/dokuwiki_0.0.20090214b-1_all.deb
dokuwiki_0.0.20090214b.orig.tar.gz
  to pool/main/d/dokuwiki/dokuwiki_0.0.20090214b.orig.tar.gz



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 526...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Mohammed Adnène Trojette <adn+...@diwi.org> (supplier of updated dokuwiki 
package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Wed, 17 Jun 2009 02:32:40 +0200
Source: dokuwiki
Binary: dokuwiki
Architecture: source all
Version: 0.0.20090214b-1
Distribution: unstable
Urgency: high
Maintainer: Mohammed Adnène Trojette <adn+...@diwi.org>
Changed-By: Mohammed Adnène Trojette <adn+...@diwi.org>
Description: 
 dokuwiki   - standards compliant simple to use wiki
Closes: 516405 526528 533286
Changes: 
 dokuwiki (0.0.20090214b-1) unstable; urgency=high
 .
   * New upstream release: (Closes: #533286)
      + include the lib/_fla directory with the source for
        multipleUpload.swf. (Closes: #526528)
      + security fix for a local file inclusion (CVE-2009-1960).
   * patches: use packaged version of SimplePie instead of an embedded one.
   * rules: no longer ship a SimplePie copy.
   * control:
      + depend on libphp-simplepie.
      + bump Standards-Version to 3.8.1.
   * postinst: correct the apache.conf file syntax. (Closes: #516405)
   * changelog:
      + add packaging copyright and license.
      + don't use a symlink to the GPL-2 text.
Checksums-Sha1: 
 59f0e940cd4f795203afe65a18a8424d63bb3ad9 1082 dokuwiki_0.0.20090214b-1.dsc
 e94d9c9c59ee5f845b667ea79f0e95c6a149f013 1774529 
dokuwiki_0.0.20090214b.orig.tar.gz
 2fdc4bc94b947797a8d5e9a2b91e8b638ba30a4d 33833 dokuwiki_0.0.20090214b-1.diff.gz
 601e1472bfbc94ef71c1a596681a16c9ff1931d3 1410432 
dokuwiki_0.0.20090214b-1_all.deb
Checksums-Sha256: 
 191f82bee55bc23cc7e59096cddbcbdbb5f2af2239e9935ee2f4128f60251522 1082 
dokuwiki_0.0.20090214b-1.dsc
 f37ce44ef95db64602ad774cd3c35c85524318dd32fd3f20ed99d435e2fa7557 1774529 
dokuwiki_0.0.20090214b.orig.tar.gz
 72be7690999c1a0ece203f85b3420aed83d8f514985ba158ccb17892ea098f9c 33833 
dokuwiki_0.0.20090214b-1.diff.gz
 09f6ba5916169a143e8093878d87b2df76b3e2d6483d6e8340f4b44d0e6cc3df 1410432 
dokuwiki_0.0.20090214b-1_all.deb
Files: 
 c64f1ba07d15e77499bef57a40bce852 1082 web optional dokuwiki_0.0.20090214b-1.dsc
 c75c4781b8698041c3c9b6b0fec2ac2e 1774529 web optional 
dokuwiki_0.0.20090214b.orig.tar.gz
 3c890569768fefd03bd1432e7418bb99 33833 web optional 
dokuwiki_0.0.20090214b-1.diff.gz
 5b52dfb8a2c7d1509c744a15d7d1b07f 1410432 web optional 
dokuwiki_0.0.20090214b-1_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)

iEYEARECAAYFAko4QHsACgkQOU3FkQ7XBOpAZgCgp6QcWxiGmH6MZqlKNM/ehT1e
6+AAn0PWdQzJ3NKsN0iGXoNcGskSAL7J
=UWRx
-----END PGP SIGNATURE-----



--- End Message ---

Reply via email to