Path to this page:
Next | Query returned 1 messages, browsing 1 to 10 | previous
CVS Commit History:
2014-07-09 22:31:46 by Matthias Scheler | Files touched by this commit (2) | |
Log message:
Pullup ticket #4447 - requested by taca
www/php-sugarcrm: security update
Revisions pulled up:
- www/php-sugarcrm/Makefile 1.8
- www/php-sugarcrm/distinfo 1.4
---
Module Name: pkgsrc
Committed By: taca
Date: Wed Jul 2 09:13:02 UTC 2014
Modified Files:
pkgsrc/www/php-sugarcrm: Makefile
Log message:
Update php-sugarcrm to 6.5.17, security release.
Quote from http://www.providentcrm.com/news/sugarcrm-6-5-17-patch-list/.
1. Module scanner now blocks two additional functions:
simplexml_load_file and simplexml_load_string
2. JS Security Fix in Emails -- changing AJAX call from GET to POST.
3. XML Handling -- Additional error handling and libxml_disable_entity_loader
is now set to true.
4. Users module -- Additional checking on un-authorised access to other users
profile, plus Bugfix for password field.
---
Module Name: pkgsrc
Committed By: taca
Date: Thu Jul 3 01:32:50 UTC 2014
Modified Files:
pkgsrc/www/php-sugarcrm: distinfo
Log message:
Forgot to commit distinfo.
|
Next | Query returned 1 messages, browsing 1 to 10 | previous