[Bug 712217] New: package horde3 and horde3 apps have had minor bugfix updates
https://bugzilla.novell.com/show_bug.cgi?id=712217 https://bugzilla.novell.com/show_bug.cgi?id=712217#c0 Summary: package horde3 and horde3 apps have had minor bugfix updates Classification: openSUSE Product: openSUSE 11.4 Version: Final Platform: Other OS/Version: Other Status: NEW Severity: Normal Priority: P5 - None Component: Network AssignedTo: bnc-team-screening@forge.provo.novell.com ReportedBy: lang@b1-systems.de QAContact: qa@suse.de Found By: --- Blocker: --- User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:5.0) Gecko/20100101 Firefox/5.0 There have been updates to horde3 shipped in openSUSE 11.4. The following updates have already been packaged in server:php:applications What to do now? horde3 has been fixed as of version 3.3.12 vs openSUSE 11.4's 3.3.11 - [jan] Convert charset of group names in SQL driver (Bug #9611). - [jan] Fix deleting of SyncML anchors if PHP short_open_tag is off (Bug #9349). - [jan] Add an experimental new Share SQL driver with better performance. - [jan] Fix integer overflow in ASN.1 parser for S/MIME messages. - [jan] Fix splitread database usage in VFS (Bug #9467). - [jan] Fix invalidating permission cache in SQL driver (Bug #9392). horde3-dimp - version 1.1.7 - [jan] Add Czech translation (Matej Hašuľ <hasis0533541@gmail.com>). - added updated license file - [jan] Fix redirecting to login screen if session times out (Bug #9281). - [mms] SECURITY: XSS - Make sure mailbox name displayed on mailbox page is properly encoded (Bug #9240). - [jan] Fix notices with certain output buffer configurations (Valentin.Vidic@CARNet.hr, Bug #7851). - [mms] Turn DNS prefetching off when displaying untrusted message content (Ticket #8836). horde3-imp - updated FSF address - version 4.3.10 - [jan] Don't submit the action form when reloading messages with iTip attachments (Bug #9502). horde3-ingo - version 1.2.6 - [mms] Fix encoding of vacation message in maildrop driver (Bug #9532). - [jan] Add upgrade scripts for next-generation SQL share driver. horde3-kronolith - version 2.3.6 - [jan] Add upgrade scripts for next-generation SQL share driver. - [jan] Export recurrence exceptions in a more portable way. horde3-mimp - fix fsf address issue - version 1.1.4 - [jan] Add Czech translation (Matej Hašuľ <hasis0533541@gmail.com>). horde3-mnemo - version 2.2.5 - [jan] Add upgrade scripts for next-generation SQL share driver. horde3-nag - fix fsf address issue - make spec compliant to opensuse 12.1-factory - minor version update 2.3.7 - [jan] Add upgrade scripts for next-generation SQL share driver. horde3-turba - minor update for 2.3.6 - [mjr] Fix issue that caused erroneous file listings for objects in sources without a __uid value. - [jan] Allow to export photo/logo fields to vCard without MIME type. - [jan] Support X-EPOCSECONDNAME fields of Nokia phones. - [jan] Add upgrade scripts for next-generation SQL share driver. - [jan] Fix splitting up names when exporting to N properties of vCards. - [jan] Only set the encoding parameter for binary data in vCards, if data is not empty (Bug #9413). - [jan] Fix searching for fields matching an email address if using 'emails' attribute instead of 'email' (Bug #9472). - [jan] Use personal address books first if determining the default one (Valentin Vidic, Request #9367). - [jan] Use name format preference not only for paging, but for sorting too (Request #8806). - [jan] Fix photo corruption when exporting to vCard 3.0 (Bug #9100). Reproducible: Always Steps to Reproduce: 1. 2. 3. Actual Results: At least one item is tagged as security fix Expected Results: Some update procedure for at least one item -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=712217 https://bugzilla.novell.com/show_bug.cgi?id=712217#c Ralf Lang <lang@b1-systems.de> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |NEEDINFO InfoProvider| |maintenance@opensuse.org -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=712217 https://bugzilla.novell.com/show_bug.cgi?id=712217#c1 Marcus Meissner <meissner@novell.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|NEEDINFO |NEW CC| |meissner@novell.com InfoProvider|maintenance@opensuse.org | AssignedTo|bnc-team-screening@forge.pr |security-team@suse.de |ovo.novell.com | Summary|package horde3 and horde3 |VUL-0: horde3 and horde3 |apps have had minor bugfix |apps have had security and |updates |bugfix updates --- Comment #1 from Marcus Meissner <meissner@novell.com> 2011-08-15 09:31:59 UTC --- security issues ... argh handled by security team. Only horde3 horde3-dimp horde3-turba seem necessary? -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=712217 https://bugzilla.novell.com/show_bug.cgi?id=712217#c2 --- Comment #2 from Ralf Lang <lang@b1-systems.de> 2011-08-15 09:41:25 UTC --- I think the turba changes are not security relevant but mere bugfixes. For the horde3 and horde3-dimp bits, do you need isolated patches or are the updated packages as of server:php:applications sufficient? -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@novell.com