[ubuntu/karmic] backuppc 3.1.0-6ubuntu4 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Mon Oct 5 20:10:13 BST 2009


backuppc (3.1.0-6ubuntu4) karmic; urgency=low

  * SECURITY UPDATE: authorization bypass via ClientNameAlias function
    - debian/patches/security-CVE-2009-3369.dpatch: disable ClientNameAlias
      usage by normal users in lib/BackupPC/CGI/EditConfig.pm.
    - CVE-2009-3369

Date: Mon, 05 Oct 2009 11:40:41 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Chuck Short <chuck.short at canonical.com>
https://launchpad.net/ubuntu/karmic/+source/backuppc/3.1.0-6ubuntu4
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Mon, 05 Oct 2009 11:40:41 -0400
Source: backuppc
Binary: backuppc
Architecture: source
Version: 3.1.0-6ubuntu4
Distribution: karmic
Urgency: low
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 backuppc   - high-performance, enterprise-grade system for backing up PCs
Changes: 
 backuppc (3.1.0-6ubuntu4) karmic; urgency=low
 .
   * SECURITY UPDATE: authorization bypass via ClientNameAlias function
     - debian/patches/security-CVE-2009-3369.dpatch: disable ClientNameAlias
       usage by normal users in lib/BackupPC/CGI/EditConfig.pm.
     - CVE-2009-3369
Checksums-Sha1: 
 be3f8a5f8a47b0f1bc3ac9931061a8d7b6cd5b03 1123 backuppc_3.1.0-6ubuntu4.dsc
 4bd30d04d7d1860e08d800ce92f1ced810eeb3d6 27602 backuppc_3.1.0-6ubuntu4.diff.gz
Checksums-Sha256: 
 fa8ff8c92668284976fac619e387f467b7f5acc16f2ef1a7800f90f26c8338a5 1123 backuppc_3.1.0-6ubuntu4.dsc
 cfc9799108501b95eb20d45797b2d2086807acf227d085c6f588b4e9a4f81679 27602 backuppc_3.1.0-6ubuntu4.diff.gz
Files: 
 dfb1030a7e441d7f42f71520108cf7bb 1123 utils optional backuppc_3.1.0-6ubuntu4.dsc
 2cf6e54f0e3d1a0512e789b1f9ab28e8 27602 utils optional backuppc_3.1.0-6ubuntu4.diff.gz
Original-Maintainer: Ludovic Drolez <ldrolez at debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)

iEYEARECAAYFAkrKRDoACgkQIHZ33voUATs+3ACeKwDiaxyrU4zqF+xmXCK/2sDW
0XoAnRZvEwicanODIEVijNe7FVM4ilxi
=b5zS
-----END PGP SIGNATURE-----


More information about the Karmic-changes mailing list