Sync libcgi-pm-perl 3.51-1 (universe) from Debian unstable (main)
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
libcgi-pm-perl (Ubuntu) |
Fix Released
|
Wishlist
|
Unassigned |
Bug Description
Please sync libcgi-pm-perl 3.51-1 (universe) from Debian unstable (main)
Changelog entries since current natty version 3.50-1:
libcgi-pm-perl (3.51-1) unstable; urgency=low
[ Niko Tyni ]
* New upstream release.
+ [SECURITY] CVE-2010-4411: fixes a double CR/LF injection vulnerability,
the last missing bit for the CVE-2010-2761 + CVE-2010-4410 issues
that were fixed in 3.50. (Closes: #606370)
+ fixes writeability checks of the temporary directory for file uploads,
and documents supported ways to override the builtin directories.
(Closes: #367711)
* debian/
[ gregor herrmann ]
* debian/watch: add URL for the unoffical 3.51 release in order to make it
uscan-able.
* debian/copyright: update list for debian/* and update formatting.
* Add patch spelling.patch to fix a spelling mistake in various files.
-- gregor herrmann <email address hidden> Thu, 13 Jan 2011 22:10:07 +0100
Changed in libcgi-pm-perl (Ubuntu): | |
importance: | Undecided → Wishlist |
status: | New → Confirmed |
[Updating] libcgi-pm-perl (3.50-1 [Ubuntu] < 3.51-1 [Debian]) pm-perl_ 3.51.orig. tar.gz: downloading from http:// ftp.debian. org/debian/> pm-perl_ 3.51-1. debian. tar.gz: downloading from http:// ftp.debian. org/debian/> pm-perl_ 3.51-1. dsc: downloading from http:// ftp.debian. org/debian/> pm-perl_ 3.50-1 [universe].
* Trying to add libcgi-pm-perl...
2011-01-15 15:20:57 INFO - <libcgi-
2011-01-15 15:20:58 INFO - <libcgi-
2011-01-15 15:20:58 INFO - <libcgi-
I: libcgi-pm-perl [universe] -> libcgi-