~ubuntu-branches/ubuntu/quantal/maas/quantal-security

  • Committer: Package Import Robot
  • Author(s): Seth Arnold
  • Date: 2014-02-11 12:07:50 UTC
  • Revision ID: package-import@ubuntu.com-20140211120750-db86jxf3oh6bukbx
Tags: 1.2+bzr1373+dfsg-0ubuntu1.2
* SECURITY UPDATE: incorrect Content-type header allowed cross-site
  scripting vulnerability if an unknown API was used. (LP: #1251336)
  - debian/patches/CVE-2013-1070.patch: Use Content-type text/plain to force
    browsers to not render error messages as HTML.
  - CVE-2013-1070
* SECURITY UPDATE: /etc/maas/txlongpoll.yaml contained a publicly readable
  password. (LP: #1254034)
  - debian/maas-region-controller.postinst: chown and chmod
    /etc/maas/txlongpoll.yaml with correct permissions
  - CVE-2013-1069
Filename Latest Rev Last Changed Committer Comment Size
..
File maas-import-ephemerals 1.2.2 11 years ago Package Import Robot Import upstream version 1.2+bzr1349+dfsg 13 KB Diff Download File
File maas-import-isos 1.1.17 11 years ago Package Import Robot Import upstream version 0.1+bzr971+dfsg 736 bytes Diff Download File
File maas-import-pxe-files 29 10 years ago Package Import Robot * SECURITY UPDATE: failure to authenticate downloa 8.1 KB Diff Download File