[ubuntu/karmic] backuppc 3.1.0-6ubuntu4 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Mon Oct 5 20:10:13 BST 2009
backuppc (3.1.0-6ubuntu4) karmic; urgency=low
* SECURITY UPDATE: authorization bypass via ClientNameAlias function
- debian/patches/security-CVE-2009-3369.dpatch: disable ClientNameAlias
usage by normal users in lib/BackupPC/CGI/EditConfig.pm.
- CVE-2009-3369
Date: Mon, 05 Oct 2009 11:40:41 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Chuck Short <chuck.short at canonical.com>
https://launchpad.net/ubuntu/karmic/+source/backuppc/3.1.0-6ubuntu4
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Mon, 05 Oct 2009 11:40:41 -0400
Source: backuppc
Binary: backuppc
Architecture: source
Version: 3.1.0-6ubuntu4
Distribution: karmic
Urgency: low
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
backuppc - high-performance, enterprise-grade system for backing up PCs
Changes:
backuppc (3.1.0-6ubuntu4) karmic; urgency=low
.
* SECURITY UPDATE: authorization bypass via ClientNameAlias function
- debian/patches/security-CVE-2009-3369.dpatch: disable ClientNameAlias
usage by normal users in lib/BackupPC/CGI/EditConfig.pm.
- CVE-2009-3369
Checksums-Sha1:
be3f8a5f8a47b0f1bc3ac9931061a8d7b6cd5b03 1123 backuppc_3.1.0-6ubuntu4.dsc
4bd30d04d7d1860e08d800ce92f1ced810eeb3d6 27602 backuppc_3.1.0-6ubuntu4.diff.gz
Checksums-Sha256:
fa8ff8c92668284976fac619e387f467b7f5acc16f2ef1a7800f90f26c8338a5 1123 backuppc_3.1.0-6ubuntu4.dsc
cfc9799108501b95eb20d45797b2d2086807acf227d085c6f588b4e9a4f81679 27602 backuppc_3.1.0-6ubuntu4.diff.gz
Files:
dfb1030a7e441d7f42f71520108cf7bb 1123 utils optional backuppc_3.1.0-6ubuntu4.dsc
2cf6e54f0e3d1a0512e789b1f9ab28e8 27602 utils optional backuppc_3.1.0-6ubuntu4.diff.gz
Original-Maintainer: Ludovic Drolez <ldrolez at debian.org>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
iEYEARECAAYFAkrKRDoACgkQIHZ33voUATs+3ACeKwDiaxyrU4zqF+xmXCK/2sDW
0XoAnRZvEwicanODIEVijNe7FVM4ilxi
=b5zS
-----END PGP SIGNATURE-----
More information about the Karmic-changes
mailing list