Your message dated Fri, 09 Jan 2009 02:47:08 +0000
with message-id <e1ll7ou-0002kr...@ries.debian.org>
and subject line Bug#508472: fixed in drupal5 5.14-1
has caused the Debian Bug report #508472,
regarding Please update to upstream version 5.14
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
508472: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508472
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: drupal5
Version: 5.12-2
Severity: grave
Tags: security
Justification: user security hole

Drupal 5.13 was released today due to a cross-site request forgery -
Malicious users may cause the superuser (user 1) to execute old
updates that may damage the database. This is described in advisory
DRUPAL-SA-2008-073, http://drupal.org/node/345441

Thanks,

-- System Information:
Debian Release: 5.0
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.26-1-vserver-amd64 (SMP w/2 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash



--- End Message ---
--- Begin Message ---
Source: drupal5
Source-Version: 5.14-1

We believe that the bug you reported is fixed in the latest version of
drupal5, which is due to be installed in the Debian FTP archive:

drupal5_5.14-1.diff.gz
  to pool/main/d/drupal5/drupal5_5.14-1.diff.gz
drupal5_5.14-1.dsc
  to pool/main/d/drupal5/drupal5_5.14-1.dsc
drupal5_5.14-1_all.deb
  to pool/main/d/drupal5/drupal5_5.14-1_all.deb
drupal5_5.14.orig.tar.gz
  to pool/main/d/drupal5/drupal5_5.14.orig.tar.gz



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 508...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Luigi Gangitano <lu...@debian.org> (supplier of updated drupal5 package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Thu, 08 Jan 2009 20:29:59 +0100
Source: drupal5
Binary: drupal5
Architecture: source all
Version: 5.14-1
Distribution: unstable
Urgency: low
Maintainer: Luigi Gangitano <lu...@debian.org>
Changed-By: Luigi Gangitano <lu...@debian.org>
Description: 
 drupal5    - a fully-featured content management framework
Closes: 503306 508472
Changes: 
 drupal5 (5.14-1) unstable; urgency=low
 .
   * New upstream release (Closes: #508472)
 .
   * debian/po/es.po
     - Updated Spanish debconf translation, thanks to Francisco Javier Cuadrado
       (Closes: #503306)
 .
   * debian/control
     - Added dependency on ${misc:Depends} to make lintian happy
Checksums-Sha1: 
 a567b69009248d7de550fabf1fa4311d31b97830 1082 drupal5_5.14-1.dsc
 bc1089626ac01165f2b3df0ac3cc521e740b328a 764727 drupal5_5.14.orig.tar.gz
 ceb6cd7f39569568a790d90bb5a30dd4d3a28029 25618 drupal5_5.14-1.diff.gz
 4bbdc0c02c6ffd7662c123d53b556075229ca99f 775418 drupal5_5.14-1_all.deb
Checksums-Sha256: 
 7203a9a5a2fb67cf7d2cdc04facfebf7ef0fa0d294cf6ef9262661a27a140571 1082 
drupal5_5.14-1.dsc
 7adb6e5f4881f0396e3f5a24cf6ad690dcc3aaebe58d73ea0914b6f57dfec4e0 764727 
drupal5_5.14.orig.tar.gz
 fc9a7a010085603de25e83cb73ba7778bb37c623198ca46627fe10e70c5b4a89 25618 
drupal5_5.14-1.diff.gz
 0458a89deb3746bd919d8cbfb8414719427744f54d9df0b27761e0bd0d7dc6dd 775418 
drupal5_5.14-1_all.deb
Files: 
 77ee0fd31b3637263821f9a812de06f5 1082 web extra drupal5_5.14-1.dsc
 281c9ef75f757ab660d5e190b4a6c6c5 764727 web extra drupal5_5.14.orig.tar.gz
 28f0e230025434f04d9b5ece1332054e 25618 web extra drupal5_5.14-1.diff.gz
 58ff5594002de63a61ab83e74d6b19f2 775418 web extra drupal5_5.14-1_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (Darwin)

iEYEARECAAYFAklmVv0ACgkQ8ZumGJJMDCZtcACffZhHMQCtv9MT/NuYMpOt0nd3
3tIAn2oH+qbZ6P1T8ILVTRsWOidvXcdo
=pl2e
-----END PGP SIGNATURE-----



--- End Message ---

Reply via email to