[awstats/el5] Add spec file missing from previous commit

Tim Jackson timj at fedoraproject.org
Sun Oct 9 19:33:34 UTC 2011


commit b1aab31d1f405cb4ee7d9309df48ffb9c384e093
Author: Tim Jackson <rpm at timj.co.uk>
Date:   Sun Oct 9 21:33:23 2011 +0200

    Add spec file missing from previous commit

 awstats.spec |    7 ++++++-
 1 files changed, 6 insertions(+), 1 deletions(-)
---
diff --git a/awstats.spec b/awstats.spec
index 1153a17..3d74eb6 100644
--- a/awstats.spec
+++ b/awstats.spec
@@ -1,6 +1,6 @@
 Name:       awstats
 Version:    6.95
-Release:    2%{?dist}
+Release:    3%{?dist}
 Summary:    Advanced Web Statistics
 License:    GPLv2
 Group:      Applications/Internet
@@ -10,6 +10,7 @@ Source1:    awstats.README.SELinux
 Source2:    awstats.README.Fedora
 Patch0:     awstats-6.95-CVE-2010-4367.patch
 Patch1:     awstats-6.95-CVE-2010-4369.patch
+Patch2:     awstats-awredir.pl-sanitize-parameters.patch
 
 BuildArch:  noarch
 BuildRoot:  %{_tmppath}/%{name}-%{version}-%{release}-root-%(%{__id_u} -n)
@@ -50,6 +51,7 @@ This package adds SELinux enforcement to AWstats.
 %setup -q
 %patch0
 %patch1
+%patch2 -p 1
 # Fix style sheets.
 perl -pi -e 's,/icon,/awstatsicons,g' wwwroot/css/*
 # Fix some bad file permissions here for convenience.
@@ -207,6 +209,9 @@ fi
 
 
 %changelog
+* Sun Oct 09 2011 Tim Jackson <rpm at timj.co.uk> 6.95-3
+- fix CRLF Injection, multiple XSS and SQL injection flaws (#740926)
+
 * Sun Dec 12 2010 Tim Jackson <rpm at timj.co.uk> - 6.95-2
 - Fix for CVE-2010-4367
 - Fix for CVE-2010-4369


More information about the scm-commits mailing list