lp:ubuntu/hardy-updates/backuppc

Created by James Westby and last modified
Get this branch:
bzr branch lp:ubuntu/hardy-updates/backuppc
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Mature

Recent revisions

17. By Jamie Strandboge

* SECURITY UPDATE: XSS in CGI/RestoreFile.pm
  - lib/BackupPC/CGI/RestoreFile.pm: update to escape share and backup
    number
  - CVE-2011-5081

16. By Jamie Strandboge

* SECURITY UPDATE: XSS in CGI/Browse.pm
  - lib/BackupPC/CGI/Browse.pm: update to verify backup number is numeric
  - http://backuppc.cvs.sourceforge.net/viewvc/backuppc/BackupPC/lib/BackupPC/CGI/Browse.pm?r1=1.23&r2=1.24&view=patch
  - CVE-2011-3361
* SECURITY UPDATE: XSS in CGI/View.pm
  - lib/BackupPC/CGI/View.pm: update to verify backup number is numeric
  - CVE-2011-XXXX

15. By Marc Deslauriers

* SECURITY UPDATE: authorization bypass via ClientNameAlias function
  - lib/BackupPC/CGI/EditConfig.pm: disable ClientNameAlias usage by
    normal users
  - Patch based on:
    http://patch-tracker.debian.org/patch/misc/view/backuppc/3.1.0-7/lib/BackupPC/CGI/EditConfig.pm
  - CVE-2009-3369

14. By Reinhard Tartler

* Merge from Debian unstable
* Remaining Ubuntu changes:
  - Use LSB functions in the init script, and make /var/run/backuppc if
    needed.
  - Remove dependancy on wwwconfig-common.
  - We like apache 2 more, so move it first to the alternatives list.
  - Bump libfile-rsyncp-perl and rsync from Suggests to Depends.
  - Remove stop script symlinks from rc0 and rc6.
  - Don't chown /var/run/backuppc in the postinst.
  - Don't move /var/lib/backuppc/conf/* (and then delete) to /etc/backuppc
    in rules, upstream is shipping the config files in /etc/backuppc
    themselves.
  - Unfuzzify debian/config.pl.diff.
  - Munge Maintainer field as per spec.
  - Add .conf to the symlink removal code in prerm. (LP: #84487)

13. By Karl Goetz <email address hidden>

Add .conf to the symlink removal code in prerm. (LP: #84487)

12. By Steve Kowalik

* Merge from Debian unstable
* Remaining Ubuntu changes:
  - Use LSB functions in the init script, and make /var/run/backuppc if
    needed.
  - Remove dependancy on wwwconfig-common.
  - We like apache 2 more, so move it first to the alternatives list.
  - Bump libfile-rsyncp-perl and rsync from Suggests to Depends.
  - Remove stop script symlinks from rc0 and rc6.
  - Don't chown /var/run/backuppc in the postinst.
  - Don't move /var/lib/backuppc/conf/* (and then delete) to /etc/backuppc
    in rules, upstream is shipping the config files in /etc/backuppc
    themselves.
  - Unfuzzify debian/config.pl.diff.
  - Munge Maintainer field as per spec.

11. By Steve Kowalik

* Merge from Debian unstable.
* Remaining Ubuntu changes:
  - Use LSB functions in the init script, and make /var/run/backuppc if
    needed.
  - Remove dependancy on wwwconfig-common.
  - We like apache 2 more, so move it first to the alternatives list.
  - Bump libfile-rsyncp-perl and rsync from Suggests to Depends.
  - Remove stop script symlinks from rc0 and rc6.
* Ubuntu changes dropped:
  - Don't use wwwconfig-common in post{inst,rm}.
* Don't chown /var/run/backuppc in the postinst.
* Don't move /var/lib/backuppc/conf/* (and then delete) to /etc/backuppc
  in rules, upstream is shipping the config files in /etc/backuppc
  themselves.
* Unfuzzify debian/config.pl.diff.
* Munge Maintainer field as per spec.

10. By Scott James Remnant (Canonical)

Remove stop script symlinks from rc0 and rc6.

9. By Martin Pitt

debian/control, debian/postinst: Get rid of wwwconfig-common.

8. By Martin Pitt

Merge from debian unstable.

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/natty/backuppc
This branch contains Public information 
Everyone can see this information.

Subscribers