1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
|
roundup (1.2.1-10+etch1) oldstable-security; urgency=high
* This version fixes a number of security problems due to missing
authorization checking, which mostly apply to CSV related
activities. User handling through the web had to be completely
disabled. Also, some templates needed reworking because for most form
submissions, POST is now the only accepted method, whereas in earlier
versions of the package, GET was the standard. This means that if you
have customized templates, you may need to rework your templates to
keep the associated features available to you. Prime examples are
attaching or detaching files, or removing messages.
-- Toni Mueller <toni@debian.org> Sat, 28 Mar 2009 12:30:33 +0100
roundup (1.2.1-5) unstable; urgency=low
Configuration of this package has moved from hand-editing
the init script to using this file:
/etc/roundup/roundup-server.ini
Please see the file /usr/share/doc/roundup/admin_guide.txt.gz
for details on keys and values you can use there.
PLEASE NOTE that this means that your previously used configuration
might not work anymore!
-- Toni Mueller <toni@debian.org> Sat, 18 Nov 2006 23:49:14 +0100
|