dwww Home | Show directory contents | Find package

twitter-bootstrap3 (3.4.1+dfsg-3+deb12u1) bookworm; urgency=medium

  * Team upload
  * Fix CVE-2024-6485:
    A security vulnerability has been discovered in bootstrap
    that could enable Cross-Site Scripting (XSS) attacks.
    The vulnerability is associated with the data-loading-text
    attribute within the button plugin.
    This vulnerability can be exploited by injecting malicious
    JavaScript code into the attribute, which would then be
    executed when the button's loading state is triggered.
    (Closes: #1084060)
  * Fix CVE-2024-6484:
    A vulnerability has been identified in Bootstrap that
    exposes users to Cross-Site Scripting (XSS) attacks.
    The issue is present in the carousel component, where the
    data-slide and data-slide-to attributes can be exploited
    through the href attribute of an <a> tag due to inadequate
    sanitization. This vulnerability could potentially enable
    attackers to execute arbitrary JavaScript within
    the victim's browser.
    (Closes: #1084060)

 -- Bastien Roucariès <rouca@debian.org>  Thu, 10 Apr 2025 23:47:00 +0200

twitter-bootstrap3 (3.4.1+dfsg-3) unstable; urgency=medium

  [ Yadd ]
  * Update lintian override info format in d/source/lintian-overrides on line 2-3, 6-8.
  * Update standards version to 4.6.1, no changes needed.
  * Replace /releases by /tags in GitHub urls
  * Fix version in debian/watch

 -- Jelmer Vernooij <jelmer@debian.org>  Sat, 17 Dec 2022 23:30:51 +0000

twitter-bootstrap3 (3.4.1+dfsg-2) unstable; urgency=medium

  [ Xavier Guimard ]
  * Replace Jonas Smedegaard by myself to uploaders. Thanks for your work!
    (Closes: #918197)
  * Apply multi-arch hints (foreign) (Closes: #923518)

  [ Debian Janitor ]
  * Set debhelper-compat version in Build-Depends.
  * Update renamed lintian tag names in lintian overrides.
  * Remove obsolete fields Contact, Name from debian/upstream/metadata
    (already present in machine-readable debian/copyright).
  * Update standards version to 4.5.0, no changes needed.

  [ Xavier Guimard ]
  * Replace build-dependency to node-uglify by uglifyjs (Closes: #979961)
  * Bump debhelper compatibility level to 13
  * Declare compliance with policy 4.5.1
  * Add "Rules-Requires-Root: no"
  * Modernize debian/watch

 -- Xavier Guimard <yadd@debian.org>  Tue, 12 Jan 2021 12:16:16 +0100

twitter-bootstrap3 (3.4.1+dfsg-1) unstable; urgency=medium

  * Team upload
  * Exclude .gitignore from upstream archive
  * New upstream version 3.4.1+dfsg. Fixes CVE-2019-8331
  * Update debian/copyright

 -- Xavier Guimard <yadd@debian.org>  Fri, 22 Feb 2019 10:25:16 +0100

# Older entries have been removed from this changelog.
# To read the complete changelog use `apt changelog fonts-glyphicons-halflings`.

Generated by dwww version 1.15 on Sun Aug 31 18:45:39 CEST 2025.