Re: XSS vulnerability in debian.org

2010-01-05 Thread Don Armstrong
On Wed, 06 Jan 2010, Holger Levsen wrote: > ow...@bugs.debian.org is the right address for such reports. > > On Mittwoch, 6. Januar 2010, David Shaw wrote: > > While browsing debian.org today, I noticed that some of the fields > > were not correctly sanitized, leading to a cross-site scripting > >

Re: XSS vulnerability in debian.org

2010-01-05 Thread Holger Levsen
Hi David, ow...@bugs.debian.org is the right address for such reports. On Mittwoch, 6. Januar 2010, David Shaw wrote: > Hello, > > My name is David Shaw, and I am a security engineer with Redspin, Inc. > > While browsing debian.org today, I noticed that some of the fields were not > correctly san

XSS vulnerability in debian.org

2010-01-05 Thread David Shaw
Hello, My name is David Shaw, and I am a security engineer with Redspin, Inc. While browsing debian.org today, I noticed that some of the fields were not correctly sanitized, leading to a cross-site scripting vulnerability. The URL to verify this vulnerability (with an XSS popup) is: http://bug

Re: www-master move: things to do: release-notes and installation-guide

2010-01-05 Thread Frans Pop
Simon Paillard wrote: > On Tue, Jan 05, 2010 at 08:57:46PM +0100, Frans Pop wrote: >> It does if I read permute_as_matrix_new() correctly. Reason is probably >> that not all languages have all formats. > > Indeed, with checkfiles => '0', the table is generated correctly. Strange. If the files are

Re: lost package in repository linux-headers-2.6.31-1-amd64

2010-01-05 Thread Simon Paillard
Hi, On Tue, Jan 05, 2010 at 11:16:36PM +0100, Wojciech Bobrzak wrote: > I do not find in repository package linux-headers-2.6.31-1-amd64 > (info: no such package). Please afford this package. This list debian-www is about the Debian *website*. For technical questions, please refer to http://debi

Re: www-master move: things to do: release-notes and installation-guide

2010-01-05 Thread Simon Paillard
On Tue, Jan 05, 2010 at 08:57:46PM +0100, Frans Pop wrote: > On Tuesday 05 January 2010, Frans Pop wrote: > > Simon Paillard wrote: > > > - However, the expected matrix is not displayed at > > > http://ne.deb.at/releases/etch/installmanual [..] > $ touch english/releases/etch/release.data > T

lost package in repository linux-headers-2.6.31-1-amd64

2010-01-05 Thread Wojciech Bobrzak
Hello I do not find in repository package linux-headers-2.6.31-1-amd64 (info: no such package). Please afford this package. -- Best regards Wojciech Bobrzak ___ wolny system operacyjny > http://debian.org/ wolny komunikator > http://psi-im.org/ -

Re: www-master move: things to do: release-notes and installation-guide

2010-01-05 Thread Frans Pop
On Tuesday 05 January 2010, Frans Pop wrote: > Simon Paillard wrote: > > - However, the expected matrix is not displayed at > > http://ne.deb.at/releases/etch/installmanual > > Try: > $ touch english/releases/etch/installmanual.wml Or probably better: $ touch english/releases/etch/release.da

Re: www-master move: things to do: release-notes and installation-guide

2010-01-05 Thread Frans Pop
Simon Paillard wrote: > - However, the expected matrix is not displayed at > http://ne.deb.at/releases/etch/installmanual Try: $ touch english/releases/etch/installmanual.wml It may have needed to have the files in place. -- To UNSUBSCRIBE, email to debian-www-requ...@lists.debian.org wi

Re: www-master move: things to do: release-notes and installation-guide

2010-01-05 Thread Simon Paillard
On Tue, Dec 29, 2009 at 11:31:57AM +0100, Gerfried Fuchs wrote: > * Frans Pop [2009-12-29 11:17:40 CET]: [..] > > > -) _past_ install manuals and release notes: Their generation is > > > disabled so a manual syncing of that material might be needed. > > > > I would suggest syncing *all* existing

, TOP DEPART : demain debut des soldes et promos

2010-01-05 Thread Julia de Delaveine.com
Pour visualiser la version HTML, cliquez-ici http://tr1.bp89.net/r5.aspx?GV1=ASP106X00KFV000MX7001CMXF000HL7KT TOP DEPART dès 8h00 ce mercredi 06 janvier 2010, début des soldes et promos. Repérer dès maintenant vos articles préférés... Toute l'equipe de delaveine.com vous souhaite une très bonne

Re: submit information about a mirror of Debian Of Saudi Arabia "Internet Services Unit"

2010-01-05 Thread Simon Paillard
On Tue, Jan 05, 2010 at 11:45:01AM +0300, ialmalki wrote: > We would like to be submit information about a mirror of Debian Of > Saudi Arabia, we have already create . Thanks for your interest in helping Debian. debian-www is about the Debian website. Please read http://debian.org/mirror/ftpmir

submit information about a mirror of Debian Of Saudi Arabia "Internet Services Unit"

2010-01-05 Thread ialmalki
Dears, We would like to be submit information about a mirror of Debian Of Saudi Arabia, we have already create . We are an academic section and for more information, see below. h Organization Name: King Abdulaziz City for Science and Technology (KACST) http://www.kacst.edu.sa Department: