[Bug 5297] Re: Trac 0.9.1 and 0.9.2 to f ix SQL injection vulnerabilities, 0.9.3 – XSS vulnerabilities

2006-05-02 Thread Dennis Kaarsemaker
** Bug 42564 has been marked a duplicate of this bug ** Changed in: trac (Ubuntu) Status: Fix Released = Confirmed -- Trac 0.9.1 and 0.9.2 to fix SQL injection vulnerabilities, 0.9.3 – XSS vulnerabilities https://launchpad.net/bugs/5297 -- universe-bugs mailing list

[Bug 5297] Re: Trac 0.9.1 and 0.9.2 to f ix SQL injection vulnerabilities, 0.9.3 – XSS vulnerabilities

2006-04-27 Thread Shot
‘Please note that we expect requesters to have an updated package already prepared and tested! You will need this anyway to provide proper diffstats and buildlogs.’ I’m sorry (I really am!), but I won’t be able to put my hands on a Dapper box, nor a clean Breezy chroot anytime soon. :| (Also,

[Bug 5297] Re: Trac 0.9.1 and 0.9.2 to f ix SQL injection vulnerabilities, 0.9.3 – XSS vulnerabilities

2006-04-26 Thread Martin Pitt
Due to the data format incompatibility, putting the new version to -security or -updates doesn't sound very wise. The fixes should be ported to 0.8.x instead. However, I think it is a good idea to create a breezy-backport of trac, so that people who really need it can use it, but people who

[Bug 5297] Re: Trac 0.9.1 and 0.9.2 to f ix SQL injection vulnerabilities, 0.9.3 – XSS vulnerabilities

2006-04-26 Thread Shot
Shot: is there a debian package for 0.9.5 already? Yeah, 0.9.5-1 is at http://packages.debian.org/unstable/source/trac -- Trac 0.9.1 and 0.9.2 to fix SQL injection vulnerabilities, 0.9.3 – XSS vulnerabilities https://launchpad.net/bugs/5297 -- universe-bugs mailing list