News for package request-tracker4

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 3.0 (quilt)
Source: request-tracker4
Binary: request-tracker4, rt4-clients, rt4-fcgi, rt4-apache2, rt4-db-postgresql, rt4-db-mysql, rt4-db-sqlite
Architecture: all
Version: 4.0.7-5+deb7u3
Maintainer: Debian Request Tracker Group <[email protected]>
Uploaders: Niko Tyni <[email protected]>, Dominic Hargreaves <[email protected]>, Dmitry Smirnov <[email protected]>
Homepage: http://bestpractical.com/rt/
Standards-Version: 3.9.3
Vcs-Browser: http://anonscm.debian.org/gitweb/?p=pkg-request-tracker/request-tracker4.git
Vcs-Git: git://anonscm.debian.org/pkg-request-tracker/request-tracker4.git
Build-Depends: debhelper (>= 5), po-debconf
Build-Depends-Indep: perl (>= 5.8.3)
Package-List: 
 request-tracker4 deb misc optional
 rt4-apache2 deb misc optional
 rt4-clients deb misc optional
 rt4-db-mysql deb misc optional
 rt4-db-postgresql deb misc optional
 rt4-db-sqlite deb misc optional
 rt4-fcgi deb misc optional
Checksums-Sha1: 
 a6c11cc16bc002f63225071bf7b8d7fe4f787e52 785270 request-tracker4_4.0.7.orig-third-party-source.tar.gz
 4c6ba7c3311e0fc42bb99434e91d03318c24186f 5896400 request-tracker4_4.0.7.orig.tar.gz
 10d3cfc2c5ee66b7778628e69db6760b10a0c251 88105 request-tracker4_4.0.7-5+deb7u3.debian.tar.gz
Checksums-Sha256: 
 39a4dd1cbc89a0123149449c89fc8ed0c4751edff1cf16ac93a91d88ad798c9e 785270 request-tracker4_4.0.7.orig-third-party-source.tar.gz
 3b382f05bededa478fbbd0b6bae2381b52eb7f6c11f1136e48c1c57de06d65ed 5896400 request-tracker4_4.0.7.orig.tar.gz
 640ef86db6593a1987ccf431a6af1f91542f7e20433e615ab6246d5b714ed1da 88105 request-tracker4_4.0.7-5+deb7u3.debian.tar.gz
Files: 
 8ada3c6dab42e62aff4480b65165e87a 785270 request-tracker4_4.0.7.orig-third-party-source.tar.gz
 9536589c5403f1c18c1545a432d541d3 5896400 request-tracker4_4.0.7.orig.tar.gz
 9ecbacaec2581c63adfdbcae6ae39592 88105 request-tracker4_4.0.7-5+deb7u3.debian.tar.gz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=puat
-----END PGP SIGNATURE-----

Changes:
request-tracker4 (4.0.7-5+deb7u3) wheezy-security; urgency=high

  * Fix remote DoS via email gateway (CVE-2014-9472)
  * Fix information discloure revealing RSS feed URLs (CVE-2015-1165)
  * Fix privilege escalation via RSS feed URLs (CVE-2015-1464)

 -- Dominic Hargreaves <[email protected]>  Sat, 14 Feb 2015 16:26:08 +0000