pkg-perl-maintainers team mailing list archive
-
pkg-perl-maintainers team
-
Mailing list archive
-
Message #01170
[Bug 702960] [NEW] Sync libcgi-pm-perl 3.51-1 (universe) from Debian unstable (main)
Public bug reported:
Please sync libcgi-pm-perl 3.51-1 (universe) from Debian unstable (main)
Changelog entries since current natty version 3.50-1:
libcgi-pm-perl (3.51-1) unstable; urgency=low
[ Niko Tyni ]
* New upstream release.
+ [SECURITY] CVE-2010-4411: fixes a double CR/LF injection vulnerability,
the last missing bit for the CVE-2010-2761 + CVE-2010-4410 issues
that were fixed in 3.50. (Closes: #606370)
+ fixes writeability checks of the temporary directory for file uploads,
and documents supported ways to override the builtin directories.
(Closes: #367711)
* debian/patches/fix-pod-spelling.patch: removed, included upstream
[ gregor herrmann ]
* debian/watch: add URL for the unoffical 3.51 release in order to make it
uscan-able.
* debian/copyright: update list for debian/* and update formatting.
* Add patch spelling.patch to fix a spelling mistake in various files.
-- gregor herrmann <gregoa@xxxxxxxxxx> Thu, 13 Jan 2011 22:10:07 +0100
** Affects: libcgi-pm-perl (Ubuntu)
Importance: Wishlist
Status: Confirmed
** Changed in: libcgi-pm-perl (Ubuntu)
Importance: Undecided => Wishlist
** Changed in: libcgi-pm-perl (Ubuntu)
Status: New => Confirmed
--
You received this bug notification because you are a member of Debian
Perl Group, which is subscribed to libcgi-pm-perl in ubuntu.
https://bugs.launchpad.net/bugs/702960
Title:
Sync libcgi-pm-perl 3.51-1 (universe) from Debian unstable (main)
Follow ups
References