Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.bugs.dist > #706719 > unrolled thread

Bug#810130: jessie-pu: package owncloud/7.0.4+dfsg-4~deb8u4

Started byDavid Prévot <taffit@debian.org>
First post2016-01-06 20:40 +0100
Last post2016-01-09 16:10 +0100
Articles 4 — 3 participants

Back to article view | Back to linux.debian.bugs.dist


Contents

  Bug#810130: jessie-pu: package owncloud/7.0.4+dfsg-4~deb8u4 David Prévot <taffit@debian.org> - 2016-01-06 20:40 +0100
    Bug#810130: jessie-pu: package owncloud/7.0.4+dfsg-4~deb8u4 "Adam D. Barratt" <adam@adam-barratt.org.uk> - 2016-01-06 21:30 +0100
      Bug#810130: jessie-pu: package owncloud/7.0.4+dfsg-4~deb8u4 "David Prévot" <taffit@debian.org> - 2016-01-07 02:50 +0100
        Bug#810130: jessie-pu: package owncloud/7.0.4+dfsg-4~deb8u4 "Adam D. Barratt" <adam@adam-barratt.org.uk> - 2016-01-09 16:10 +0100

#706719 — Bug#810130: jessie-pu: package owncloud/7.0.4+dfsg-4~deb8u4

FromDavid Prévot <taffit@debian.org>
Date2016-01-06 20:40 +0100
SubjectBug#810130: jessie-pu: package owncloud/7.0.4+dfsg-4~deb8u4
Message-ID<qO266-5si-13@gated-at.bofh.it>

[Multipart message — attachments visible in raw view] — view raw

Package: release.debian.org
Severity: normal
Tags: jessie
User: release.debian.org@packages.debian.org
Usertags: pu

Hi,

Happy new year!

As agreed with the security team, I’d like to fix some recently
disclosed but low impact security issues via pu. Even if CVE-2016-1501
(a “Full installation path disclosure”) is not really relevant with a
Debian package, the fix is small and sane enough to be worth including
IMHO.

Please note that #798895 has been superseded by DSA-3373-1 as well as
the present request.

Thanks in advance for considering.

Regards

David

[toc] | [next] | [standalone]


#706725

From"Adam D. Barratt" <adam@adam-barratt.org.uk>
Date2016-01-06 21:30 +0100
Message-ID<qO2Su-5Zm-3@gated-at.bofh.it>
In reply to#706719
Control: tags -1 + confirmed

On Wed, 2016-01-06 at 15:34 -0400, David Prévot wrote:
> As agreed with the security team, I’d like to fix some recently
> disclosed but low impact security issues via pu. Even if CVE-2016-1501
> (a “Full installation path disclosure”) is not really relevant with a
> Debian package, the fix is small and sane enough to be worth including
> IMHO.

Please go ahead.

Regards,

Adam

[toc] | [prev] | [next] | [standalone]


#706783

From"David Prévot" <taffit@debian.org>
Date2016-01-07 02:50 +0100
Message-ID<qO7Sa-XB-13@gated-at.bofh.it>
In reply to#706725
Hi,

> Control: tags -1 + confirmed
[…]
> Please go ahead.

Accepted in -new, thanks.

Regards

David

[toc] | [prev] | [next] | [standalone]


#707531

From"Adam D. Barratt" <adam@adam-barratt.org.uk>
Date2016-01-09 16:10 +0100
Message-ID<qP3jr-7hf-3@gated-at.bofh.it>
In reply to#706783
Control: tags -1 + pending

On Wed, 2016-01-06 at 21:45 -0400, David Prévot wrote:
> Hi,
> 
> > Control: tags -1 + confirmed
> […]
> > Please go ahead.
> 
> Accepted in -new, thanks.

Flagged for acceptance into p-u.

Regards,

Adam

[toc] | [prev] | [standalone]


Back to top | Article view | linux.debian.bugs.dist


csiph-web