Your message dated Thu, 13 Dec 2012 10:32:57 +0000
with message-id <e1tj665-0003bs...@franck.debian.org>
and subject line Bug#694998: fixed in mediawiki 1:1.19.3-1
has caused the Debian Bug report #694998,
regarding mediawiki: CVE-2012-5391 CVE-2012-5395
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
694998: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=694998
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: mediawiki
Severity: grave
Tags: security
Justification: user security hole

Please see http://www.gossamer-threads.com/lists/wiki/mediawiki/316419

Cheers,
        Moritz

--- End Message ---
--- Begin Message ---
Source: mediawiki
Source-Version: 1:1.19.3-1

We believe that the bug you reported is fixed in the latest version of
mediawiki, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 694...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Thorsten Glaser <t...@mirbsd.de> (supplier of updated mediawiki package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA384

Format: 1.8
Date: Wed, 12 Dec 2012 09:44:08 +0100
Source: mediawiki
Binary: mediawiki
Architecture: source all
Version: 1:1.19.3-1
Distribution: unstable
Urgency: high
Maintainer: Mediawiki Maintenance Team 
<pkg-mediawiki-de...@lists.alioth.debian.org>
Changed-By: Thorsten Glaser <t...@mirbsd.de>
Description: 
 mediawiki  - website engine for collaborative work
Closes: 694998
Changes: 
 mediawiki (1:1.19.3-1) unstable; urgency=high
 .
   [ Dominik George ]
   * Team upload
   * New upstream version fixes security issues (Closes: #694998)
     + Prevent session fixation in Special:UserLogin (CVE-2012-5391)
       https://bugzilla.wikimedia.org/show_bug.cgi?id=40995
     + Prevent linker regex from exceeding PCRE backtrack limit
       https://bugzilla.wikimedia.org/show_bug.cgi?id=41400
 .
   [ Thorsten Glaser ]
   * Fix spelling error in README.Debian (thanks lintian!)
Checksums-Sha1: 
 0b7c0d9c7925abc1f81aa032e9ef313796d08862 2094 mediawiki_1.19.3-1.dsc
 9c0bff33446b100e1ae6c4883e7c5bc8273aa9a9 18447791 mediawiki_1.19.3.orig.tar.gz
 56eb20c4c59861c02cabe02d2eab6ccd041fb004 36871 mediawiki_1.19.3-1.debian.tar.gz
 117dde12956b1ceb288cb8aa203cdece690932ea 17648746 mediawiki_1.19.3-1_all.deb
Checksums-Sha256: 
 c9f88d20b9743c552d31acec7fbd2b345521cd6de2e0a78d904ccd5a173dfd93 2094 
mediawiki_1.19.3-1.dsc
 d7049f230efd12789017867c65abdf1470567a81b5f9a5bccdfe9532f67ad63d 18447791 
mediawiki_1.19.3.orig.tar.gz
 7d75501973180519d618fa529173816e65cb4be6656b2d3b902b528b5f35f15e 36871 
mediawiki_1.19.3-1.debian.tar.gz
 6c321f4721f0f955623aef08a895aca745f787f7ee75a597ece002da949c199f 17648746 
mediawiki_1.19.3-1_all.deb
Files: 
 5bdd7cdcca92445639d4bbedfe0eb039 2094 web optional mediawiki_1.19.3-1.dsc
 6333c9fda65cec9f0570f6bae03cf8d3 18447791 web optional 
mediawiki_1.19.3.orig.tar.gz
 a329874b37d5fb8277c9c4ba3d0fc79e 36871 web optional 
mediawiki_1.19.3-1.debian.tar.gz
 908b52f65b131cbdbd14999482cbff28 17648746 web optional 
mediawiki_1.19.3-1_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (MirBSD)
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=5aaZ
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to