mediawiki 1:1.15.2-1 source package in Debian

Changelog

mediawiki (1:1.15.2-1) unstable; urgency=high


  * New upstream release.
  * Fixes security issue:
  "Two security issues were discovered:

   A CSS validation issue was discovered which allows editors to display
   external images in wiki pages. This is a privacy concern on public
   wikis, since a malicious user may link to an image on a server they
   control, which would allow that attacker to gather IP addresses and
   other information from users of the public wiki. All sites running
   publicly-editable MediaWiki installations are advised to upgrade. All
   versions of MediaWiki (prior to this one) are affected.

   A data leakage vulnerability was discovered in thumb.php which affects
   wikis which restrict access to private files using img_auth.php, or
   some similar scheme. All versions of MediaWiki since 1.5 are affected."
  * Updated standards.
  * Removed section about upgrading from mediawiki1.x packages
    in README.Debian since they do not exist in any supported distribution
    anymore.
  * Switched php5-gd and imagemagick in Suggests. Closes: #542008
  * Backported patch from revision 51083 to fix a bug with invalid titles.
  Closes: #537134
  * Backported patch from revision 61090 to add a unique guid per RSS
    feed element.
  Closes: #383130
  * Refreshed patches. 

 -- Romain Beauxis <email address hidden>  Mon, 15 Mar 2010 11:41:07 -0500

Upload details

Uploaded by:
Mediawiki Maintainance Team
Uploaded to:
Sid
Original maintainer:
Mediawiki Maintainance Team
Architectures:
any
Section:
web
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Downloads

File Size SHA-256 Checksum
mediawiki_1.15.2-1.dsc 1.5 KiB 15acfd63dc787d03da6ec93a2ebc063e4b82ea1e64e8a4a4bebf22492212188d
mediawiki_1.15.2.orig.tar.gz 10.9 MiB 6b1e5f6d385214853452f36331aa952523bd40fc2765761d9788b827cfc5b704
mediawiki_1.15.2-1.diff.gz 29.8 KiB c71d3ef160cd2191abab8e905d823a803339a8fe98b129f17fb8628d7a3ba07d

No changes file available.

Binary packages built by this source