X-Git-Url: http://git.vanrenterghem.biz/git.ikiwiki.info.git/blobdiff_plain/55c0e557d9904721fb35479e139a853f90fe39b4..bcfba8cdb50dcaca9faa182955825670efb15852:/debian/changelog diff --git a/debian/changelog b/debian/changelog index 1897414c4..919814f2f 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,9 +1,17 @@ -ikiwiki (3.20141016.2) UNRELEASED; urgency=high +ikiwiki (3.20120629.3) UNRELEASED; urgency=medium + + * HTML-escape error messages, in one case avoiding potential cross-site + scripting (CVE-2016-4561, OVE-20160505-0012) + + -- Simon McVittie Sun, 08 May 2016 15:33:51 +0100 + +ikiwiki (3.20120629.2) wheezy; urgency=medium [ Joey Hess ] - * Fix XSS in openid selector. Thanks, Raghav Bisht. + * Fix XSS in openid selector. Thanks, Raghav Bisht. (Closes: #781483; + CVE-2015-2793) - -- Simon McVittie Sun, 29 Mar 2015 22:28:15 +0100 + -- Simon McVittie Mon, 06 Apr 2015 20:34:51 +0100 ikiwiki (3.20120629.1) wheezy; urgency=medium