-
cacti (0.8.7g-1ubuntu0.10.10.1) maverick-security; urgency=low
* SECURITY UPDATE: FIX SQL injection in auth_login.php (LP: #906773)
- debian/patches/CVE-2011-4824.patch: patch derived from upstream.
- CVE-2011-4824
-- Mahyuddin Susanto <email address hidden> Tue, 20 Dec 2011 15:46:56 +0700
-
cacti (0.8.7g-1) unstable; urgency=low
* New upstream release (Closes: #592465).
* Update context in 05_no-adodb.patch to remove fuzz.
* Remove "official" patches from previous release.
* Remove 563955_undefined_index_local_data_id.patch, incorporated upstream.
* Remove CVE-2010-2092.patch, incorporated upstream.
* Import new batch of "official" upstream patches.
* Update apache configuration to work in FastCGI deployments (Closes: #593203).
- thanks to Thijs Kinkhorst <email address hidden> (Closes: #578909).
-- Jamie Strandboge <email address hidden> Fri, 24 Sep 2010 15:29:13 +0000
-
cacti (0.8.7e-4) unstable; urgency=high
* Forward-port fix for CVE-2010-2092 from stable package (Closes: #582691)
-- Ubuntu Archive Auto-Sync <email address hidden> Mon, 14 Jun 2010 09:49:07 +0100
-
cacti (0.8.7e-3) unstable; urgency=high
* Import upstream fix for SQL injection vulnerability (no CVE assigned yet)
- thanks to Thijs Kinkhorst <email address hidden> (Closes: #578909).
-- Ubuntu Archive Auto-Sync <email address hidden> Sun, 09 May 2010 14:13:48 +0100
-
cacti (0.8.7e-2) unstable; urgency=low
* Import 2 new "official" patches from upstream
* Italian debconf translation
- thanks to Alessandro De Zorzi <email address hidden> (Closes: #548447)
* Fix for "Undefined index: local_data_id in graphs_new.php"
- new debian patch 563955_undefined_index_local_data_id.patch
- thanks to Teodor MICU <email address hidden> (Closes: #563955)
* Fix for "must not RE-add /etc/apache2/conf.d/cacti.conf link on upgrade"
- thanks to Patrick Schoenfeld <email address hidden> (Closes: #561477)
* Bump debhelper compatibility level to 5
-- Ubuntu Archive Auto-Sync <email address hidden> Thu, 04 Feb 2010 17:25:19 +0000