pkgsrc-Changes-HG archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

[pkgsrc/trunk]: pkgsrc/www/drupal This release fixes a security vulnerability...



details:   https://anonhg.NetBSD.org/pkgsrc/rev/8a50276ec365
branches:  trunk
changeset: 536204:8a50276ec365
user:      adrianp <adrianp%pkgsrc.org@localhost>
date:      Wed Dec 05 23:16:19 2007 +0000

description:
This release fixes a security vulnerability. Sites are urged to upgrade immediately. For more details, please see the security announcement:

* SA-2007-031 - Drupal core - SQL Injection possible when certain contributed modules are enabled

In addition to this security vulnerability, the following bugs have been fixed since the 5.2 release:

* 178478 by scor: typo in text displyed when the DB is installed but not accessible
* Patch 122759 by Robrecht: fixed broken query in upgrade path.
* 55277 by catch and JirkaRybka: when flat comment view is used, order comments by cid (ie. original submission order) instead of timestamp (ie. last editing time order) to avoid comments jumping 
around when being edited
* Patch 181063 by chx and bjaspan: fixed problem with drupal_bootstrap() not booting to the proper level.
* 184668 by hazexp, Remove unnecessary ';'
* Patch 182728 by Darren Oh: improved PHPdoc of db_rewrite_sql().
* 93425 by bjaspan: remove pre-Drupal 4.6 era destination handling cruft carried over in comment module
* 154388 (backport of 172262) by JirkaRybka. Better globals handling in install system, so the choosen profile and language are remembered.
* 171117 by JirkaRybka: set access time for admin created or edited accounts so they are exempt from the spam protection we have for accounts never logged in
* Patch 168829 by Neil Drumm: fixed link in documentation.
* 165924 by odious. Use accurate count query for user list.
* 187601 by Bart Jansens. Use correct HTTP status codes for redirects.
* 180109 by JirkaRybka: overcome browser quirk to detect when no taxonomy term was selected
* 134984 by mikesmullin. Fix x2 coordinate for rendering gradients.

diffstat:

 www/drupal/Makefile |  6 ++++--
 www/drupal/distinfo |  8 ++++----
 2 files changed, 8 insertions(+), 6 deletions(-)

diffs (34 lines):

diff -r a2888c51cb78 -r 8a50276ec365 www/drupal/Makefile
--- a/www/drupal/Makefile       Wed Dec 05 22:12:55 2007 +0000
+++ b/www/drupal/Makefile       Wed Dec 05 23:16:19 2007 +0000
@@ -1,6 +1,6 @@
-# $NetBSD: Makefile,v 1.24 2007/10/18 13:01:35 adrianp Exp $
+# $NetBSD: Makefile,v 1.25 2007/12/05 23:16:19 adrianp Exp $
 
-DISTNAME=      drupal-5.3
+DISTNAME=      drupal-5.4
 CATEGORIES=    www
 MASTER_SITES=  http://drupal.org/files/projects/
 
@@ -19,6 +19,8 @@
 PKG_USERS_VARS+=       APACHE_USER
 
 BUILD_DEFS+=           APACHE_USER APACHE_GROUP
+USE_TOOLS+=            perl:run
+REPLACE_PERL=          scripts/code-style.pl
 
 OWN_DIRS+=             ${DRUPAL}/sites/default
 OWN_DIRS_PERMS+=       ${DRUPAL}/files ${APACHE_USER} ${APACHE_GROUP} 0750
diff -r a2888c51cb78 -r 8a50276ec365 www/drupal/distinfo
--- a/www/drupal/distinfo       Wed Dec 05 22:12:55 2007 +0000
+++ b/www/drupal/distinfo       Wed Dec 05 23:16:19 2007 +0000
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.17 2007/10/18 13:01:36 adrianp Exp $
+$NetBSD: distinfo,v 1.18 2007/12/05 23:16:19 adrianp Exp $
 
-SHA1 (drupal-5.3.tar.gz) = 71aaf830b65ec3c1029855b6ae95b6493ca17ae5
-RMD160 (drupal-5.3.tar.gz) = d6eaa0a3ebe860857a9f212302206db967e2478a
-Size (drupal-5.3.tar.gz) = 753427 bytes
+SHA1 (drupal-5.4.tar.gz) = 76e08a766d36d24c4628f61aea47d8961064f29b
+RMD160 (drupal-5.4.tar.gz) = ed20245d804cbd2ff7670a164e61b5be6202600e
+Size (drupal-5.4.tar.gz) = 753584 bytes



Home | Main Index | Thread Index | Old Index