[PKG-Openstack-devel] Bug#828967: horizon / CVE-2016-4428 #828967

Thomas Goirand zigo at debian.org
Wed Jun 29 13:50:47 UTC 2016


On 06/29/2016 11:24 AM, Moritz Muehlenhoff wrote:
> Hi Thomas,
> https://bugs.launchpad.net/bugs/1567673 has been assigned CVE-2016-4428 and I think we should fix
> it in jessie-security. Can you please prepare an update? unstable also needs the patch.
> 
> Cheers,
>         Moritz
> 

Hi Moritz,

I have uploaded fixes for both Sid and Experimental, and the fix for
Stable is committed to Git in here:

http://anonscm.debian.org/cgit/openstack/horizon.git/commit/?h=debian/icehouse&id=d74e751ce93f03240f3ad4206e93d6e7e05da55f

Since you may prefer a diff to read from your mail client, I have
attached it to this message.

I also uploaded the built package here:
http://sid.gplhost.com/jessie-proposed-updates/horizon/

Please allow me to upload it.

Cheers,

Thomas Goirand (zigo)

-------------- next part --------------
A non-text attachment was scrubbed...
Name: horizon_2014.1.3-7+deb8u2.diff
Type: text/x-diff
Size: 5208 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/openstack-devel/attachments/20160629/41f790e4/attachment.diff>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: OpenPGP digital signature
URL: <http://lists.alioth.debian.org/pipermail/openstack-devel/attachments/20160629/41f790e4/attachment.sig>


More information about the Openstack-devel mailing list