The NetBSD Project

CVS log for pkgsrc/devel/bugzilla/distinfo

[BACK] Up to [cvs.netbsd.org] / pkgsrc / devel / bugzilla

Request diff between arbitrary revisions


Default branch: MAIN


Revision 1.17.2.1 / (download) - annotate - [select for diffs], Thu Feb 5 10:02:30 2009 UTC (3 years, 3 months ago) by rtr
Branch: pkgsrc-2008Q4
Changes since 1.17: +4 -4 lines
Diff to previous 1.17 (colored) next main 1.18 (colored)

pullup ticket #2681 - requested by adrianp
bugzilla: bug fix

revisions pulled up:
pkgsrc/devel/bugzilla/Makefile	1.34
pkgsrc/devel/bugzilla/PLIST	1.16
pkgsrc/devel/bugzilla/distinfo	1.18

   Module Name:    pkgsrc
   Committed By:   adrianp
   Date:           Tue Feb  3 23:05:28 UTC 2009

   Modified Files:
           pkgsrc/devel/bugzilla: Makefile PLIST distinfo

   Log Message:
   Update to 2.22.7
   + Saving changes to parameters would sometimes fail silently. Bugzilla
     will now throw an error instead of failing silently. (bug 347707)
   Security fixes for: http://www.bugzilla.org/security/2.22.6/

Revision 1.18 / (download) - annotate - [select for diffs], Tue Feb 3 23:05:28 2009 UTC (3 years, 3 months ago) by adrianp
Branch: MAIN
CVS Tags: pkgsrc-2012Q1-base, pkgsrc-2012Q1, pkgsrc-2011Q4-base, pkgsrc-2011Q4, pkgsrc-2011Q3-base, pkgsrc-2011Q3, pkgsrc-2011Q2-base, pkgsrc-2011Q2, pkgsrc-2011Q1-base, pkgsrc-2011Q1, pkgsrc-2010Q4-base, pkgsrc-2010Q4, pkgsrc-2010Q3-base, pkgsrc-2010Q3, pkgsrc-2010Q2-base, pkgsrc-2010Q2, pkgsrc-2010Q1-base, pkgsrc-2010Q1, pkgsrc-2009Q4-base, pkgsrc-2009Q4, pkgsrc-2009Q3-base, pkgsrc-2009Q3, pkgsrc-2009Q2-base, pkgsrc-2009Q2, pkgsrc-2009Q1-base, pkgsrc-2009Q1, HEAD
Changes since 1.17: +4 -4 lines
Diff to previous 1.17 (colored)

Update to 2.22.7
+ Saving changes to parameters would sometimes fail silently. Bugzilla
  will now throw an error instead of failing silently. (bug 347707)
Security fixes for: http://www.bugzilla.org/security/2.22.6/

Revision 1.16.4.1 / (download) - annotate - [select for diffs], Sat Nov 15 16:50:48 2008 UTC (3 years, 6 months ago) by tron
Branch: pkgsrc-2008Q3
Changes since 1.16: +4 -4 lines
Diff to previous 1.16 (colored) next main 1.17 (colored)

Pullup ticket #2590 - requested by adrianp
bugzilla: security update

Revisions pulled up:
- devel/bugzilla/Makefile		1.33
- devel/bugzilla/PLIST			1.15
- devel/bugzilla/distinfo		1.17
---
Module Name:	pkgsrc
Committed By:	adrianp
Date:		Sun Nov  9 20:09:02 UTC 2008

Modified Files:
	pkgsrc/devel/bugzilla: Makefile PLIST distinfo

Log Message:
Bugzilla 2.22.6 is compatible with Perl 5.10.
Includes a fix for: http://www.bugzilla.org/security/2.20.6/

Revision 1.17 / (download) - annotate - [select for diffs], Sun Nov 9 20:09:02 2008 UTC (3 years, 6 months ago) by adrianp
Branch: MAIN
CVS Tags: pkgsrc-2008Q4-base
Branch point for: pkgsrc-2008Q4
Changes since 1.16: +4 -4 lines
Diff to previous 1.16 (colored)

Bugzilla 2.22.6 is compatible with Perl 5.10.
Includes a fix for: http://www.bugzilla.org/security/2.20.6/

Revision 1.15.4.1 / (download) - annotate - [select for diffs], Mon Aug 18 23:14:57 2008 UTC (3 years, 9 months ago) by rtr
Branch: pkgsrc-2008Q2
Changes since 1.15: +4 -4 lines
Diff to previous 1.15 (colored) next main 1.16 (colored)

pullup ticket #2490 - requested by adrianp
bugzilla: update for security issue

revisions pulled up:
pkgsrc/devel/bugzilla/Makefile	1.32
pkgsrc/devel/bugzilla/distinfo	1.16

   Module Name:    pkgsrc
   Committed By:   adrianp
   Date:           Sun Aug 17 09:21:47 UTC 2008

   Modified Files:
           pkgsrc/devel/bugzilla: Makefile distinfo

   Log Message:
   Update to 2.22.5
   Addresses a new security issue:
           http://www.bugzilla.org/security/2.22.4/

Revision 1.16 / (download) - annotate - [select for diffs], Sun Aug 17 09:21:47 2008 UTC (3 years, 9 months ago) by adrianp
Branch: MAIN
CVS Tags: pkgsrc-2008Q3-base, cube-native-xorg-base, cube-native-xorg
Branch point for: pkgsrc-2008Q3
Changes since 1.15: +4 -4 lines
Diff to previous 1.15 (colored)

Update to 2.22.5
Addresses a new security issue:
	http://www.bugzilla.org/security/2.22.4/

Revision 1.14.6.1 / (download) - annotate - [select for diffs], Thu May 15 10:33:01 2008 UTC (4 years ago) by rtr
Branch: pkgsrc-2008Q1
Changes since 1.14: +4 -4 lines
Diff to previous 1.14 (colored) next main 1.15 (colored)

pullup ticket #2380 - requested by adrianp
bugzilla: update for cross-site scripting vulnerability

revisions pulled up:
- pkgsrc/devel/bugzilla/Makefile
- pkgsrc/devel/bugzilla/PLIST
- pkgsrc/devel/bugzilla/distinfo

   Module Name:	pkgsrc
   Committed By:	adrianp
   Date:		Tue May  6 19:36:39 UTC 2008

   Modified Files:
   	pkgsrc/devel/bugzilla: Makefile PLIST distinfo

   Log Message:
   2.22.4

   Class:       Cross-Site Scripting
   Versions:    2.17.2 and higher
   Description: When using the "Format for Printing" view of a bug (or
               the "Long Format" of a bug list, which is the same thing),
   	     there was a cross-site scripting hole--arbitrary text
   	     from a particular URL parameter could be injected into the
      	     page without filtering.

Revision 1.15 / (download) - annotate - [select for diffs], Tue May 6 19:36:39 2008 UTC (4 years ago) by adrianp
Branch: MAIN
CVS Tags: pkgsrc-2008Q2-base, cwrapper
Branch point for: pkgsrc-2008Q2
Changes since 1.14: +4 -4 lines
Diff to previous 1.14 (colored)

2.22.4

Class:       Cross-Site Scripting
Versions:    2.17.2 and higher
Description: When using the "Format for Printing" view of a bug (or
             the "Long Format" of a bug list, which is the same thing),
	     there was a cross-site scripting hole--arbitrary text
	     from a particular URL parameter could be injected into the
	     page without filtering.

Revision 1.14 / (download) - annotate - [select for diffs], Sat Aug 25 09:49:34 2007 UTC (4 years, 9 months ago) by adrianp
Branch: MAIN
CVS Tags: pkgsrc-2008Q1-base, pkgsrc-2007Q4-base, pkgsrc-2007Q4, pkgsrc-2007Q3-base, pkgsrc-2007Q3
Branch point for: pkgsrc-2008Q1
Changes since 1.13: +4 -4 lines
Diff to previous 1.13 (colored)

Update to 2.22.3
+ Bug lists in iCal format were cutting off bug summaries if they had
  a comma in them. (bug 274408)

+ If collectstats.pl encountered an invalid series when collecting data for
  New Charts, it would stop processing all series, silently. This means
  that several series may not have been collecting data. On PostgreSQL,
  all series were failing, thus meaning that New Charts were not working
  at all on PostgreSQL. (bug 257351)

Revision 1.12.2.1 / (download) - annotate - [select for diffs], Wed Feb 7 16:38:02 2007 UTC (5 years, 3 months ago) by salo
Branch: pkgsrc-2006Q4
Changes since 1.12: +4 -4 lines
Diff to previous 1.12 (colored) next main 1.13 (colored)

Pullup ticket 2016 - requested by adrianp
security update for bugzilla

Revisions pulled up:
- pkgsrc/devel/bugzilla/Makefile			1.23 (via patch)
- pkgsrc/devel/bugzilla/PLIST				1.12
- pkgsrc/devel/bugzilla/distinfo			1.13

   Module Name:		pkgsrc
   Committed By:	adrianp
   Date:		Sat Feb  3 17:21:02 UTC 2007

   Modified Files:
   	pkgsrc/devel/bugzilla: Makefile PLIST distinfo

   Log Message:
   Update to 2.22.2
   + Make Bugzilla compatible with Template Toolkit 2.15 (bug 357374)

   + Make Bugzilla compatible with versions of MySQL higher than 5.0.25
     (bug 321645)

   + Sanity Check can now only be run by people with the "admin" privilege.
     (bug 91761)

   + Security [XSS] fix
     https://bugzilla.mozilla.org/show_bug.cgi?id=367674

Revision 1.13 / (download) - annotate - [select for diffs], Sat Feb 3 17:21:02 2007 UTC (5 years, 3 months ago) by adrianp
Branch: MAIN
CVS Tags: pkgsrc-2007Q2-base, pkgsrc-2007Q2, pkgsrc-2007Q1-base, pkgsrc-2007Q1
Changes since 1.12: +4 -4 lines
Diff to previous 1.12 (colored)

Update to 2.22.2
+ Make Bugzilla compatible with Template Toolkit 2.15 (bug 357374)

+ Make Bugzilla compatible with versions of MySQL higher than 5.0.25
  (bug 321645)

+ Sanity Check can now only be run by people with the "admin" privilege.
  (bug 91761)

+ Security [XSS] fix
  https://bugzilla.mozilla.org/show_bug.cgi?id=367674

Revision 1.10.6.1 / (download) - annotate - [select for diffs], Sat Nov 4 22:23:14 2006 UTC (5 years, 6 months ago) by salo
Branch: pkgsrc-2006Q3
Changes since 1.10: +4 -4 lines
Diff to previous 1.10 (colored) next main 1.11 (colored)

Pullup ticket 1873 - requested by adrianp
security update for bugzilla

Revisions pulled up:
- pkgsrc/devel/bugzilla/MESSAGE				1.3
- pkgsrc/devel/bugzilla/Makefile			1.20, 1.21
- pkgsrc/devel/bugzilla/PLIST				1.10, 1.11
- pkgsrc/devel/bugzilla/distinfo			1.11, 1.12
- pkgsrc/devel/bugzilla/options.mk			1.2
- pkgsrc/devel/bugzilla/files/localconfig		1.3

   Module Name:		pkgsrc
   Committed By:	adrianp
   Date:		Sun Oct 15 12:21:14 UTC 2006

   Modified Files:
   	pkgsrc/devel/bugzilla: MESSAGE Makefile PLIST distinfo options.mk
   	pkgsrc/devel/bugzilla/files: localconfig

   Log Message:
   Update to 2.22

   New features include:
   * Complete PostgreSQL Support
   * Parameters In Sections
   * One Codebase, Multiple Databases
   * UTF-8 for New Installations
   * Admins Can Impersonate Users
   * Bug Import and Moving Improvements
   * Adding Individual Bugs to Saved Searches
   * Attach URLs
   * Optional "Strict Isolation" for Groups
   * "editcomponents" Change
   * "shutdownhtml" Change
   * Miscellaneous Improvements

   For further details see:
   	http://www.bugzilla.org/releases/2.22/new-features.html
   	http://www.bugzilla.org/releases/2.22/release-notes.html
---
   Module Name:		pkgsrc
   Committed By:	adrianp
   Date:		Sun Oct 15 12:36:05 UTC 2006

   Modified Files:
   	pkgsrc/devel/bugzilla: Makefile PLIST distinfo

   Log Message:
   Update to 2.22.1
   + When sending mail, Bugzilla could throw the error "Insecure dependency in
   exec while running with -T switch" (bug 340538).

   + Using the public webdot server (for dependency graphs) should work
   again (bug 351243).

   + The "I'm added to or removed from this capacity" email preference
   wasn't working for new bugs (bug 349852).

   + The original release of 2.22 incorrectly said it required Template-Toolkit
   version 2.08. In actual fact, Bugzilla requires version 2.10 (bug 351478).

   + votes.cgi would crash if your bug was the one confirming a bug (bug 351300).

   + checksetup.pl now correctly reports if your Template::Plugin::GD module
   is missing. If missing, it could lead to charts and graphs not working
   (bug 345389).

   + The "Keyword" field on buglist.cgi was not sorted alphabetically, so
   it wasn't very useful for sorting (bug 342828).

   + Sendmail will no longer complain about there being a newline in the
   email address, when Bugzilla sends mail (bug 331365).

   + contrib/bzdbcopy.pl would try to insert an invalid value into the
   database, unnecessarily (bug 335572).

   + Deleting a bug now correctly deletes its attachments from the database
   (bug 339667).

Revision 1.12 / (download) - annotate - [select for diffs], Sun Oct 15 12:36:05 2006 UTC (5 years, 7 months ago) by adrianp
Branch: MAIN
CVS Tags: pkgsrc-2006Q4-base
Branch point for: pkgsrc-2006Q4
Changes since 1.11: +4 -4 lines
Diff to previous 1.11 (colored)

Update to 2.22.1
+ When sending mail, Bugzilla could throw the error "Insecure dependency in
exec while running with -T switch" (bug 340538).

+ Using the public webdot server (for dependency graphs) should work
again (bug 351243).

+ The "I'm added to or removed from this capacity" email preference
wasn't working for new bugs (bug 349852).

+ The original release of 2.22 incorrectly said it required Template-Toolkit
version 2.08. In actual fact, Bugzilla requires version 2.10 (bug 351478).

+ votes.cgi would crash if your bug was the one confirming a bug (bug 351300).

+ checksetup.pl now correctly reports if your Template::Plugin::GD module
is missing. If missing, it could lead to charts and graphs not working
(bug 345389).

+ The "Keyword" field on buglist.cgi was not sorted alphabetically, so
it wasn't very useful for sorting (bug 342828).

+ Sendmail will no longer complain about there being a newline in the
email address, when Bugzilla sends mail (bug 331365).

+ contrib/bzdbcopy.pl would try to insert an invalid value into the
database, unnecessarily (bug 335572).

+ Deleting a bug now correctly deletes its attachments from the database
(bug 339667).

Revision 1.11 / (download) - annotate - [select for diffs], Sun Oct 15 12:21:13 2006 UTC (5 years, 7 months ago) by adrianp
Branch: MAIN
Changes since 1.10: +4 -4 lines
Diff to previous 1.10 (colored)

Update to 2.22

New features include:
* Complete PostgreSQL Support
* Parameters In Sections
* One Codebase, Multiple Databases
* UTF-8 for New Installations
* Admins Can Impersonate Users
* Bug Import and Moving Improvements
* Adding Individual Bugs to Saved Searches
* Attach URLs
* Optional "Strict Isolation" for Groups
* "editcomponents" Change
* "shutdownhtml" Change
* Miscellaneous Improvements

For further details see:
	http://www.bugzilla.org/releases/2.22/new-features.html
	http://www.bugzilla.org/releases/2.22/release-notes.html

Revision 1.9.2.1 / (download) - annotate - [select for diffs], Wed Mar 15 14:44:48 2006 UTC (6 years, 2 months ago) by salo
Branch: pkgsrc-2005Q4
Changes since 1.9: +4 -4 lines
Diff to previous 1.9 (colored) next main 1.10 (colored)

Pullup ticket 1215 - requested by Adrian Portelli
security update for bugzilla

Revisions pulled up:
- pkgsrc/devel/bugzilla/Makefile	1.17
- pkgsrc/devel/bugzilla/PLIST		1.8
- pkgsrc/devel/bugzilla/distinfo	1.10

   Module Name:		pkgsrc
   Committed By:	adrianp
   Date:		Tue Feb 21 16:48:55 UTC 2006

   Modified Files:
   	pkgsrc/devel/bugzilla: Makefile PLIST distinfo

   Log Message:
   Update to 2.20.1
   Make pkglint happer
   This also fixes a number of security issues:
   	http://www.securityfocus.com/archive/1/425584/30/0/threaded

   > Version 2.20.1
   > --------------
   >
   > + Many PostgreSQL fixes, including fixing whine.pl on Pg 8
   >   (bug 301062) and fixing the --regenerate option of collectstats.pl
   >   for all versions of Pg (bug 316971). However, users who want full
   >   PostgreSQL support are encouraged to use the 2.22 series, as
   >   certain PostgreSQL bugs were discovered that will not be fixed
   >   in 2.20 (their fixes were too complex).
   >
   > + In Bugzilla 2.20, the "administrator" user created by checksetup.pl
   >   would not ever be sent email, because their email preferences were
   >   left blank. This has been fixed for 2.20.1. However, if you created
   >   this administrative user with Bugzilla 2.20, make sure to go back
   >   and enable their Email Preferences. (bug 317489)
   >
   > + The bzdbcopy.pl script mentioned in these release notes
   >   has now actually been checked-in to the 2.20 branch, and so
   >   it's included in this release. (bug 291776)
   >
   > + When there's only one Classification, you now won't be required
   >   to pick a Classification on bug entry. (bug 311489)
   >
   > + You can no longer add dependencies on bugs you can't see.
   >   (bug 141593)
   >
   > + The CC list is included in "New" bug emails, again. (bug 313661)
   >
   > + In the original 2.20, certain scripts were not correctly using
   >   the "shadow database," if it was specified. This has been fixed
   >   in 2.20.1. (bug 313695)
   >
   > + "Saved Searches" that were saved before Bugzilla 2.20, would throw
   >   an error if they contained "Days Since Bug Changed." as part of their
   >   criteria. This has been fixed in Bugzilla 2.20.1. (bug 302599)
   >
   > + You can now successfully delete a product even when Target Milestones
   >   are turned off. (bug 317025)
   >
   > + checksetup.pl now correctly pre-compiles templates for languages other
   >   than English. (bug 304417)
   >
   > + The "All Closed" chart that is created by default in New Charts
   >   now actually represents all closed bugs, and not all bugs in the
   >   product. (bug 300473)
   >
   > + CSV bug lists with more than 1000 dates now work properly. (bug 257813)
   >
   > + Various bugs with upgrading from previous versions of Bugzilla
   >   have been fixed. (bug 307662, bug 311047, bug 310108)
   >
   > + Many, many other bug fixes. See
   > http://www.bugzilla.org/status/changes.html
   >   for details on what was fixed between 2.20 and 2.20.1.

Revision 1.10 / (download) - annotate - [select for diffs], Tue Feb 21 16:48:55 2006 UTC (6 years, 3 months ago) by adrianp
Branch: MAIN
CVS Tags: pkgsrc-2006Q3-base, pkgsrc-2006Q2-base, pkgsrc-2006Q2, pkgsrc-2006Q1-base, pkgsrc-2006Q1
Branch point for: pkgsrc-2006Q3
Changes since 1.9: +4 -4 lines
Diff to previous 1.9 (colored)

Update to 2.20.1
Make pkglint happer
This also fixes a number of security issues:
	http://www.securityfocus.com/archive/1/425584/30/0/threaded

> Version 2.20.1
> --------------
>
> + Many PostgreSQL fixes, including fixing whine.pl on Pg 8
>   (bug 301062) and fixing the --regenerate option of collectstats.pl
>   for all versions of Pg (bug 316971). However, users who want full
>   PostgreSQL support are encouraged to use the 2.22 series, as
>   certain PostgreSQL bugs were discovered that will not be fixed
>   in 2.20 (their fixes were too complex).
>
> + In Bugzilla 2.20, the "administrator" user created by checksetup.pl
>   would not ever be sent email, because their email preferences were
>   left blank. This has been fixed for 2.20.1. However, if you created
>   this administrative user with Bugzilla 2.20, make sure to go back
>   and enable their Email Preferences. (bug 317489)
>
> + The bzdbcopy.pl script mentioned in these release notes
>   has now actually been checked-in to the 2.20 branch, and so
>   it's included in this release. (bug 291776)
>
> + When there's only one Classification, you now won't be required
>   to pick a Classification on bug entry. (bug 311489)
>
> + You can no longer add dependencies on bugs you can't see.
>   (bug 141593)
>
> + The CC list is included in "New" bug emails, again. (bug 313661)
>
> + In the original 2.20, certain scripts were not correctly using
>   the "shadow database," if it was specified. This has been fixed
>   in 2.20.1. (bug 313695)
>
> + "Saved Searches" that were saved before Bugzilla 2.20, would throw
>   an error if they contained "Days Since Bug Changed." as part of their
>   criteria. This has been fixed in Bugzilla 2.20.1. (bug 302599)
>
> + You can now successfully delete a product even when Target Milestones
>   are turned off. (bug 317025)
>
> + checksetup.pl now correctly pre-compiles templates for languages other
>   than English. (bug 304417)
>
> + The "All Closed" chart that is created by default in New Charts
>   now actually represents all closed bugs, and not all bugs in the
>   product. (bug 300473)
>
> + CSV bug lists with more than 1000 dates now work properly. (bug 257813)
>
> + Various bugs with upgrading from previous versions of Bugzilla
>   have been fixed. (bug 307662, bug 311047, bug 310108)
>
> + Many, many other bug fixes. See http://www.bugzilla.org/status/changes.html
>   for details on what was fixed between 2.20 and 2.20.1.

Revision 1.9 / (download) - annotate - [select for diffs], Wed Oct 26 10:16:09 2005 UTC (6 years, 6 months ago) by adrianp
Branch: MAIN
CVS Tags: pkgsrc-2005Q4-base
Branch point for: pkgsrc-2005Q4
Changes since 1.8: +5 -5 lines
Diff to previous 1.8 (colored)

Move to bugzilla 2.20
From the release-notes.html:

What's New?
 New User-Interface Color/Style
 Higher-Level Categorization of Bugs (above "Product")
 Regular Reports by Email of Complex Queries ("Whining")
 "Environment Variable" Authentication Method
 User-List Drop-Down Menus
 Server-Side Comment Wrapping
 UI for Editing Priority, OS, Platform, and Severity
 Bugzilla Queries as RSS
 Choice of E-Mail Sending Methods
 "Large Attachment" Storage
 and lots of Miscellaneous Improvements

See http://www.bugzilla.org/releases/2.20/release-notes.html for
all the details.

Revision 1.7.2.1 / (download) - annotate - [select for diffs], Sat Oct 8 06:13:04 2005 UTC (6 years, 7 months ago) by snj
Branch: pkgsrc-2005Q3
Changes since 1.7: +4 -4 lines
Diff to previous 1.7 (colored) next main 1.8 (colored)

Pullup ticket 804 - requested by Lubomir Sedlacik
security update for bugzilla

Revisions pulled up:
- pkgsrc/devel/bugzilla/Makefile	1.11
- pkgsrc/devel/bugzilla/distinfo	1.8

   Module Name:    pkgsrc
   Committed By:   salo
   Date:           Wed Oct  5 15:09:23 UTC 2005

   Modified Files:
           pkgsrc/devel/bugzilla: Makefile distinfo

   Log Message:
   Security update to 2.18.4:

   "Two security issues have been reported in Bugzilla, which can be
    exploited by malicious people to disclose system and potentially
    sensitive information."

   See http://www.bugzilla.org/security/2.18.4/ for more details.

Revision 1.8 / (download) - annotate - [select for diffs], Wed Oct 5 15:09:23 2005 UTC (6 years, 7 months ago) by salo
Branch: MAIN
Changes since 1.7: +4 -4 lines
Diff to previous 1.7 (colored)

Security update to 2.18.4:

"Two security issues have been reported in Bugzilla, which can be
 exploited by malicious people to disclose system and potentially
 sensitive information."

See http://www.bugzilla.org/security/2.18.4/ for more details.

Revision 1.6.2.1 / (download) - annotate - [select for diffs], Thu Jul 14 22:01:51 2005 UTC (6 years, 10 months ago) by snj
Branch: pkgsrc-2005Q2
Changes since 1.6: +4 -4 lines
Diff to previous 1.6 (colored) next main 1.7 (colored)

Pullup ticket 600 - requested by Adrian Portelli
security update for bugzilla

Revisions pulled up:
- pkgsrc/devel/bugzilla/Makefile	1.8
- pkgsrc/devel/bugzilla/PLIST		1.4
- pkgsrc/devel/bugzilla/distinfo	1.7

    Module Name:    pkgsrc
    Committed By:   adrianp
    Date:           Thu Jul 14 10:26:29 UTC 2005

    Modified Files:
            pkgsrc/devel/bugzilla: Makefile PLIST distinfo

    Log Message:
    - Update to 2.18.3
    - Update addresses two security issues
    - From the ChangeLog:

    > Version 2.18.2
    > --------------
    >
    > + You can now create accounts with createaccount.cgi even
    >   when the "requirelogin" parameter is turned on. (Bug 294778)
    >
    > + Bugs that are in disabled groups may not show a padlock
    >   on the bug list, or may otherwise behave strangely. You
    >   can now fix this using sanitycheck.cgi. (Bug 277454)
    >
    > + If sendmail dies while you are marking a bug
    >   as a duplicate, the duplicates table will no longer become
    >   corrupted. (Bug 225042)
    >
    > + Any user can change a flag on any bug. This also allows the
    >   attacker to expose the summary of any bug, even a hidden bug.
    >
    > + Summaries of private bugs are sometimes exposed under a very rare
    >   condition if you use MySQL replication.
    >
    > Version 2.18.3
    > --------------
    >
    > + The query.cgi page was broken in 2.18.2 by bug 300138.
    >   That is now fixed.

Revision 1.7 / (download) - annotate - [select for diffs], Thu Jul 14 10:26:29 2005 UTC (6 years, 10 months ago) by adrianp
Branch: MAIN
CVS Tags: pkgsrc-2005Q3-base
Branch point for: pkgsrc-2005Q3
Changes since 1.6: +4 -4 lines
Diff to previous 1.6 (colored)

- Update to 2.18.3
- Update addresses two security issues
- From the ChangeLog:

> Version 2.18.2
> --------------
>
> + You can now create accounts with createaccount.cgi even
>   when the "requirelogin" parameter is turned on. (Bug 294778)
>
> + Bugs that are in disabled groups may not show a padlock
>   on the bug list, or may otherwise behave strangely. You
>   can now fix this using sanitycheck.cgi. (Bug 277454)
>
> + If sendmail dies while you are marking a bug
>   as a duplicate, the duplicates table will no longer become
>   corrupted. (Bug 225042)
>
> + Any user can change a flag on any bug. This also allows the
>   attacker to expose the summary of any bug, even a hidden bug.
>
> + Summaries of private bugs are sometimes exposed under a very rare
>   condition if you use MySQL replication.
>
> Version 2.18.3
> --------------
>
> + The query.cgi page was broken in 2.18.2 by bug 300138.
>   That is now fixed.

Revision 1.6 / (download) - annotate - [select for diffs], Fri Jun 17 22:58:02 2005 UTC (6 years, 11 months ago) by adrianp
Branch: MAIN
CVS Tags: pkgsrc-2005Q2-base
Branch point for: pkgsrc-2005Q2
Changes since 1.5: +2 -1 lines
Diff to previous 1.5 (colored)

- Modify checkconfig.pl to accept any version of File::Spec as this will
  by taken care of by pkgsrc infrastructure anyway.
- The problem is that checkconfig.pl thinks File::Spec v0.90 is v0.9
  and complains that the version installed is too old.
- Problem reported by Brandon Adams <brandon.adams@omron.com> on tech-pkg@

Revision 1.4.2.1 / (download) - annotate - [select for diffs], Wed May 18 11:59:31 2005 UTC (7 years ago) by salo
Branch: pkgsrc-2005Q1
Changes since 1.4: +4 -4 lines
Diff to previous 1.4 (colored) next main 1.5 (colored)

Pullup ticket 509 - requested by Adrian Portelli
security update for bugzilla

Revisions pulled up:
- pkgsrc/devel/bugzilla/DESCR		1.2
- pkgsrc/devel/bugzilla/MESSAGE		1.2
- pkgsrc/devel/bugzilla/Makefile	1.6
- pkgsrc/devel/bugzilla/PLIST		1.3
- pkgsrc/devel/bugzilla/distinfo	1.5

   Module Name:		pkgsrc
   Committed By:	adrianp
   Date:		Sun May 15 17:04:32 UTC 2005

   Modified Files:
   	pkgsrc/devel/bugzilla: DESCR MESSAGE Makefile PLIST distinfo

   Log Message:
   - Update to 2.18.1
   - Two "Information Disclosure" security bugs fixed
   - From the ChangeLog:
   > + You can now enter a negative time for "Hours Worked"
   >   in the time-tracking area. (Bug 271276)
   >
   > + The BugMail.pm customization required for Windows (as
   >   described in the Bugzilla Guide) now actually works. (Bug 280911)
   >
   > + Users who were using Bugzilla 2.8 can now successfully upgrade
   >   to 2.18.1 (they couldn't upgrade to 2.18). (Bug 283403)
   >
   > + Dependency mails are now properly sent during a mass-change of bugs.
   >   (Bug 178157)

Revision 1.5 / (download) - annotate - [select for diffs], Sun May 15 17:04:32 2005 UTC (7 years ago) by adrianp
Branch: MAIN
Changes since 1.4: +4 -4 lines
Diff to previous 1.4 (colored)

- Update to 2.18.1
- Two "Information Disclosure" security bugs fixed
- From the ChangeLog:
> + You can now enter a negative time for "Hours Worked"
>   in the time-tracking area. (Bug 271276)
>
> + The BugMail.pm customization required for Windows (as
>   described in the Bugzilla Guide) now actually works. (Bug 280911)
>
> + Users who were using Bugzilla 2.8 can now successfully upgrade
>   to 2.18.1 (they couldn't upgrade to 2.18). (Bug 283403)
>
> + Dependency mails are now properly sent during a mass-change of bugs.
>   (Bug 178157)

Revision 1.4 / (download) - annotate - [select for diffs], Wed Feb 23 22:24:10 2005 UTC (7 years, 3 months ago) by agc
Branch: MAIN
CVS Tags: pkgsrc-2005Q1-base
Branch point for: pkgsrc-2005Q1
Changes since 1.3: +2 -1 lines
Diff to previous 1.3 (colored)

Add RMD160 digests.

Revision 1.3 / (download) - annotate - [select for diffs], Mon Jan 17 23:03:17 2005 UTC (7 years, 4 months ago) by adrianp
Branch: MAIN
Changes since 1.2: +3 -5 lines
Diff to previous 1.2 (colored)

- Move to 2.18 release
- No ChangeLog available only known change:
  Incorporate patches from last security issue

Revision 1.2 / (download) - annotate - [select for diffs], Thu Jan 6 13:15:27 2005 UTC (7 years, 4 months ago) by adrianp
Branch: MAIN
Changes since 1.1: +3 -1 lines
Diff to previous 1.1 (colored)

Bump to nb1 for recent security issue:
https://bugzilla.mozilla.org/show_bug.cgi?id=272620

Revision 1.1.1.1 / (download) - annotate - [select for diffs] (vendor branch), Sun Jan 2 13:39:55 2005 UTC (7 years, 4 months ago) by adrianp
Branch: TNF
CVS Tags: pkgsrc-base
Changes since 1.1: +0 -0 lines
Diff to previous 1.1 (colored)

Bugzilla is a "Defect Tracking System" or "Bug-Tracking System". Defect 
Tracking Systems allow individual or groups of developers to keep track of 
outstanding bugs in their product effectively. Most commercial defect-tracking 
software vendors charge enormous licensing fees. Despite being "free", Bugzilla
has many features its expensive counterparts lack. Consequently, Bugzilla has 
quickly become a favorite of hundreds of organizations across the globe.

What Does Bugzilla Do?

- Track bugs and code changes 
- Communicate with teammates 
- Submit and review patches 
- Manage quality assurance (QA) 

Bugzilla can help you get a handle on the software development process. 
Successful projects often are the result of successful organization and 
communication. Bugzilla is a powerful tool that will help your team get 
organized and communicate effectively.


Revision 1.1 / (download) - annotate - [select for diffs], Sun Jan 2 13:39:55 2005 UTC (7 years, 4 months ago) by adrianp
Branch: MAIN

Initial revision

This form allows you to request diff's between any two revisions of a file. You may select a symbolic revision name using the selection box or you may type in a numeric name using the type-in text box.




CVSweb <webmaster@jp.NetBSD.org>