pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: [pkgsrc-2014Q2] pkgsrc/www/php-sugarcrm



Module Name:    pkgsrc
Committed By:   tron
Date:           Wed Jul  9 20:31:46 UTC 2014

Modified Files:
        pkgsrc/www/php-sugarcrm [pkgsrc-2014Q2]: Makefile distinfo

Log Message:
Pullup ticket #4447 - requested by taca
www/php-sugarcrm: security update

Revisions pulled up:
- www/php-sugarcrm/Makefile                                     1.8
- www/php-sugarcrm/distinfo                                     1.4

---
   Module Name: pkgsrc
   Committed By:        taca
   Date:                Wed Jul  2 09:13:02 UTC 2014

   Modified Files:
        pkgsrc/www/php-sugarcrm: Makefile

   Log Message:
   Update php-sugarcrm to 6.5.17, security release.

   Quote from http://www.providentcrm.com/news/sugarcrm-6-5-17-patch-list/.

   1. Module scanner now blocks two additional functions:
      simplexml_load_file and simplexml_load_string
   2. JS Security Fix in Emails --  changing AJAX call from GET to POST.
   3. XML Handling -- Additional error handling and libxml_disable_entity_loader
      is now set to true.
   4. Users module -- Additional checking on un-authorised access to other users
      profile, plus Bugfix for password field.

---
   Module Name: pkgsrc
   Committed By:        taca
   Date:                Thu Jul  3 01:32:50 UTC 2014

   Modified Files:
        pkgsrc/www/php-sugarcrm: distinfo

   Log Message:
   Forgot to commit distinfo.


To generate a diff of this commit:
cvs rdiff -u -r1.7 -r1.7.2.1 pkgsrc/www/php-sugarcrm/Makefile
cvs rdiff -u -r1.3 -r1.3.2.1 pkgsrc/www/php-sugarcrm/distinfo

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.




Home | Main Index | Thread Index | Old Index