Bug#553644: marked as done (jetty: multiple vulnerabilities)

2009-12-23 Thread Debian Bug Tracking System
Your message dated Wed, 23 Dec 2009 17:38:34 + with message-id e1nnvaq-ax...@ries.debian.org and subject line Bug#553644: fixed in jetty 6.1.22-1 has caused the Debian Bug report #553644, regarding jetty: multiple vulnerabilities to be marked as done. This means that you claim

Bug#553644:

2009-12-15 Thread Pablo Duboue
fixed 6.1.22 thanks We don't ship the test WebApps enabled by default (from what I can gather, it seems we don't ship them at all) and this new version fixes the remaining XSS vulnerabilities (I double checked the fix is in). This bug will be closed when the new version gets uploaded.

Processed: Bug#553644

2009-12-15 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: fixed 553644 6.1.22 Bug #553644 [src:jetty] jetty: multiple vulnerabilities The source jetty and version do not appear to match any binary packages Bug Marked as fixed in versions jetty/6.1.22. thanks Stopping processing here. Please contact me

Bug#553644:

2009-12-15 Thread Pablo Duboue
fixed 553644 6.1.22 thanks (resending as I forgot to CC: the BTS) We don't ship the test WebApps enabled by default (from what I can gather, it seems we don't ship them at all) and this new version fixes the remaining XSS vulnerabilities (I double checked the fix is in). This bug will be closed

Bug#553644: jetty: multiple vulnerabilities

2009-11-01 Thread Raphael Geissert
Source: jetty Severity: grave Tags: security Hi, Multiple vulnerabilities have been discovered in jetty 6.x and 7.x. The original advisory can be found at http://www.ush.it/team/ush/hack-jetty6x7x/jetty-adv.txt When you fix this issue, please mention the CVE ids in the changelog, if they are