LWN.net Logo

Fedora alert FEDORA-2008-9015 (mantis)

From:  updates@fedoraproject.org
To:  fedora-package-announce@redhat.com
Subject:  [SECURITY] Fedora 8 Update: mantis-1.1.4-1.fc8
Date:  Mon, 20 Oct 2008 22:17:57 +0000
Message-ID:  <20081020221757.E5B28208D7A@bastion.fedora.phx.redhat.com>

-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2008-9015 2008-10-20 19:30:22 -------------------------------------------------------------------------------- Name : mantis Product : Fedora 8 Version : 1.1.4 Release : 1.fc8 URL : http://www.mantisbt.org/ Summary : Web-based bugtracking system Description : Mantis is a web-based bugtracking system. It is written in the PHP scripting language and requires the MySQL database and a webserver. Mantis has been installed on Windows, MacOS, OS/2, and a variety of Unix operating systems. Any web browser should be able to function as a client. Documentation can be found in: /usr/share/doc/mantis-1.1.4 When the package has finished installing, you will need to perform some additional configuration steps; these are described in: /usr/share/doc/mantis-1.1.4/README.Fedora -------------------------------------------------------------------------------- Update Information: This releases fixes CVE-2008-3102 and a bunch of other issues. -------------------------------------------------------------------------------- ChangeLog: * Sun Oct 19 2008 Gianluca Sforna <giallu gmail com> - 1.1.4-1 - new upstream release * Tue Oct 14 2008 Gianluca Sforna <giallu gmail com> - 1.1.3-1 - new upstream release - drop upstreamed patch * Sat Jul 19 2008 Gianluca Sforna <giallu gmail com> - 1.1.2-1 - new upstream release - add patch for bugnotes notification * Sat Jan 19 2008 Gianluca Sforna <giallu gmail com> - 1.1.1-1 - new upstream release - Add more info in README.Fedora about configuration, upgrades and SELinux * Sat Jan 5 2008 Gianluca Sforna <giallu gmail com> - 1.1.0-1 - new upstream release - rediffed patches - allow local usage out of the box - remove .htaccess files - revert using embedded adodb see http://www.mantisbt.org/bugs/view.php?id=8256 for details - improve description and README.Fedora - Remove unneeded diffutils BR - Updated License field -------------------------------------------------------------------------------- References: [ 1 ] Bug #464135 - CVE-2008-3102 mantis session hijacking [F8] https://bugzilla.redhat.com/show_bug.cgi?id=464135 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update mantis' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at http://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list Fedora-package-announce@redhat.com http://www.redhat.com/mailman/listinfo/fedora-package-ann...


(Log in to post comments)

Copyright © 2012, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds