Subject: CVS commit: [pkgsrc-2006Q4] pkgsrc/www/trac
To: None <pkgsrc-changes@NetBSD.org>
From: Lubomir Sedlacik <salo@netbsd.org>
List: pkgsrc-changes
Date: 03/10/2007 21:46:04
Module Name:	pkgsrc
Committed By:	salo
Date:		Sat Mar 10 21:46:04 UTC 2007

Modified Files:
	pkgsrc/www/trac [pkgsrc-2006Q4]: Makefile distinfo

Log Message:
Pullup ticket 2049 - requested by wiz
security update for trac

Revisions pulled up:
- pkgsrc/www/trac/Makefile				1.24, 1.25
- pkgsrc/www/trac/distinfo				1.18

   Module Name:		pkgsrc
   Committed By:	wiz
   Date:		Thu Feb 22 19:01:28 UTC 2007

   Modified Files:
   	pkgsrc/www/trac: Makefile

   Log Message:
   pkglint cleanup; update HOMEPAGE/MASTER_SITES.
   >From Sergey Svishchev in private mail.
---
   Module Name:		pkgsrc
   Committed By:	wiz
   Date:		Sat Mar 10 20:55:34 UTC 2007

   Modified Files:
   	pkgsrc/www/trac: Makefile distinfo

   Log Message:
   Update to 0.10.3.1:

   Trac 0.10.3.1 (March 8, 2007)
   http://svn.edgewall.org/repos/trac/tags/trac-0.10.3.1

    Trac 0.10.3.1 is a security release:
    * Always send "Content-Disposition: attachment" headers where potentially
      unsafe (user provided) content is available for download. This behaviour
      can be altered using the "render_unsafe_content" option in the
      "attachment" and "browser" sections of trac.ini.
    * Fixed XSS vulnerability in "download wiki page as text" in combination with
      Microsoft IE. Reported by Yoshinori Oota, Business Architects Inc.


To generate a diff of this commit:
cvs rdiff -r1.23 -r1.23.2.1 pkgsrc/www/trac/Makefile
cvs rdiff -r1.17 -r1.17.2.1 pkgsrc/www/trac/distinfo

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.