gnatsweb (4.00-1ubuntu0.7.04) feisty-security; urgency=low * SECURITY UPDATE: + gnatsweb.pl (LP: #191196) - Fixed missing escaping of the database parameter which leads to a cross-site scripting vulnerability (XSS) via this parameter (CVE-2007-2808). + debian/control - Switch Maintainer to Ubuntu MOTU Developers * References: + http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2808 + http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=427156 -- Emanuele Gentili Fri, 29 Feb 2008 03:40:07 +0100 gnatsweb (4.00-1) unstable; urgency=low * New upstream release. * Closes: #223777: O: gnatsweb -- Web interface to GNU GNATS - Adopting -- Chad Walstrom Fri, 26 Mar 2004 18:46:08 -0600 gnatsweb (3.beta99.2+cvs20011113-2) unstable; urgency=low * Officially orphaned. -- Milan Zamazal Fri, 12 Dec 2003 12:38:56 +0100 gnatsweb (3.beta99.2+cvs20011113-1) unstable; urgency=low * Repackaged, as a separate package now. * Lintian 1.20.16 satisfied. -- Milan Zamazal Tue, 13 Nov 2001 10:25:12 +0100