pkgsrc-Changes-HG archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

[pkgsrc/pkgsrc-2017Q1]: pkgsrc/www/py-django-cms Pullup ticket #5408 - reques...



details:   https://anonhg.NetBSD.org/pkgsrc/rev/864c6317c4be
branches:  pkgsrc-2017Q1
changeset: 360367:864c6317c4be
user:      bsiegert <bsiegert%pkgsrc.org@localhost>
date:      Thu May 11 18:04:57 2017 +0000

description:
Pullup ticket #5408 - requested by sevan
www/py-django-cms: security fix

Revisions pulled up:
- www/py-django-cms/Makefile                                    1.44
- www/py-django-cms/PLIST                                       1.30
- www/py-django-cms/distinfo                                    1.35

---
   Module Name:    pkgsrc
   Committed By:   adam
   Date:           Tue May  9 08:13:50 UTC 2017

   Modified Files:
           pkgsrc/www/py-django-cms: Makefile PLIST distinfo

   Log Message:
   Changes 3.4.3:
   * Fixed a security vulnerability in the page redirect field which
   allowed users
     to insert JavaScript code.
   * Fixed a security vulnerability where the ``next`` parameter for the
   toolbar login
     was not sanitised and could point to another domain.

diffstat:

 www/py-django-cms/Makefile |   4 ++--
 www/py-django-cms/PLIST    |   5 ++++-
 www/py-django-cms/distinfo |  10 +++++-----
 3 files changed, 11 insertions(+), 8 deletions(-)

diffs (46 lines):

diff -r 717e2122c58b -r 864c6317c4be www/py-django-cms/Makefile
--- a/www/py-django-cms/Makefile        Thu May 11 17:47:20 2017 +0000
+++ b/www/py-django-cms/Makefile        Thu May 11 18:04:57 2017 +0000
@@ -1,6 +1,6 @@
-# $NetBSD: Makefile,v 1.43 2017/02/02 07:54:11 adam Exp $
+# $NetBSD: Makefile,v 1.43.2.1 2017/05/11 18:04:57 bsiegert Exp $
 
-DISTNAME=      django-cms-3.4.2
+DISTNAME=      django-cms-3.4.3
 PKGNAME=       ${PYPKGPREFIX}-${DISTNAME}
 CATEGORIES=    www python
 MASTER_SITES=  ${MASTER_SITE_GITHUB:=divio/}
diff -r 717e2122c58b -r 864c6317c4be www/py-django-cms/PLIST
--- a/www/py-django-cms/PLIST   Thu May 11 17:47:20 2017 +0000
+++ b/www/py-django-cms/PLIST   Thu May 11 18:04:57 2017 +0000
@@ -1,4 +1,4 @@
-@comment $NetBSD: PLIST,v 1.29 2017/02/02 07:54:11 adam Exp $
+@comment $NetBSD: PLIST,v 1.29.2.1 2017/05/11 18:04:57 bsiegert Exp $
 ${PYSITELIB}/${EGG_INFODIR}/PKG-INFO
 ${PYSITELIB}/${EGG_INFODIR}/SOURCES.txt
 ${PYSITELIB}/${EGG_INFODIR}/dependency_links.txt
@@ -110,6 +110,9 @@
 ${PYSITELIB}/cms/forms/utils.py
 ${PYSITELIB}/cms/forms/utils.pyc
 ${PYSITELIB}/cms/forms/utils.pyo
+${PYSITELIB}/cms/forms/validators.py
+${PYSITELIB}/cms/forms/validators.pyc
+${PYSITELIB}/cms/forms/validators.pyo
 ${PYSITELIB}/cms/forms/widgets.py
 ${PYSITELIB}/cms/forms/widgets.pyc
 ${PYSITELIB}/cms/forms/widgets.pyo
diff -r 717e2122c58b -r 864c6317c4be www/py-django-cms/distinfo
--- a/www/py-django-cms/distinfo        Thu May 11 17:47:20 2017 +0000
+++ b/www/py-django-cms/distinfo        Thu May 11 18:04:57 2017 +0000
@@ -1,6 +1,6 @@
-$NetBSD: distinfo,v 1.34 2017/02/02 07:54:11 adam Exp $
+$NetBSD: distinfo,v 1.34.2.1 2017/05/11 18:04:57 bsiegert Exp $
 
-SHA1 (django-cms-3.4.2.tar.gz) = f5fcbc7f27f20d3ef84a557e5fb33e52eb7f1f8c
-RMD160 (django-cms-3.4.2.tar.gz) = 0b2ce4431a665979c4a274ae83b4039e8ed8551e
-SHA512 (django-cms-3.4.2.tar.gz) = 5265f50edd2d84d361bdc98e03f20bb7da3a379efa1eada633eb6ccd04ed5a1facb45d8f04c2545c373ede2dd731ef2abdea1ab944e0d656640e508e537ff330
-Size (django-cms-3.4.2.tar.gz) = 5236544 bytes
+SHA1 (django-cms-3.4.3.tar.gz) = 8af432d7083ba5daa23e55a0b0a8bca41591a563
+RMD160 (django-cms-3.4.3.tar.gz) = f7dd71ad389c84e39acedb70862d8b80ab3e3d14
+SHA512 (django-cms-3.4.3.tar.gz) = 0c6b418bf025b042cefc4bb89fb663cc419a8e806a3c6e436198b7bb595d8012f79c7f02d08cee891e5e1ef83bd4f52f0e2adcc4ebd1d22325a674cbc7e69be9
+Size (django-cms-3.4.3.tar.gz) = 5234748 bytes



Home | Main Index | Thread Index | Old Index