pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: pkgsrc/www



Module Name:    pkgsrc
Committed By:   taca
Date:           Mon Feb  3 15:23:22 UTC 2014

Modified Files:
        pkgsrc/www/contao: Makefile.common
        pkgsrc/www/contao32: distinfo

Log Message:
Update contao32 to 3.2.5, including fix for CVE-2014-1860.

* pkgsrc change: remove obsolete lines for contao31.

Version 3.2.5 (2014-02-03)
--------------------------

### Fixed
Correctly load the parent pages in the navigation modules (see #6696).

### Fixed
Correctly encode URLs with GET parameters in the syndication links (see #6683).

### Fixed
Do not pass POST data to the `deserialize()` function, so it is not vulnerable
to PHP object injection. Thanks to Pedro Ribeiro for his input (see #6695).

### Fixed
Allow any character in passwords, especially the less-than symbol (see #6447).

### Fixed
Purge the image cache if a file is being renamed (see #6641).

### Fixed
Preserve tags in custom CSS definitions (see #6667).

### Fixed
Make the swipe CSS selectors more specific (see #6666).

### Fixed
Correctly optimize floating-point numbers in style sheets (see #6674).


To generate a diff of this commit:
cvs rdiff -u -r1.56 -r1.57 pkgsrc/www/contao/Makefile.common
cvs rdiff -u -r1.5 -r1.6 pkgsrc/www/contao32/distinfo

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.




Home | Main Index | Thread Index | Old Index