Mailinglist Archive: opensuse-buildservice (89 mails)

< Previous Next >
[opensuse-buildservice] Open Build Service(OBS) 2.6.2 released

OBS 2.6.2 released
==================

This release is primarly needed to pull new rubygem-redcarpet 3.2.3
release. This is fixing some XSS attack vectors to the web interface
of OBS.

OBS releases before 2.6.0 are not affected by this issue.

Updaters from any OBS 2.6 release can just ugrade the packages
and restart all services. Updaters from former releases should
read the README.UPDATERS file.

OBS is available as usual via the OBS:Server:2.5 project.

https://build.opensuse.org/project/show/OBS:Server:2.5

The appliance can be downloaded from

http://openbuildservice.org/download


Details from the Release Notes:
===============================

Feature backports:
==================

* none

Changes:
========

* dispatcher sends no armv7 jobs to aarch64 build hosts anymore

Bugfixes:
=========

* webui: depends on rubygem-redcarpet 3.2.3, fixes possible XSS attack
(boo#926328)


--

Adrian Schroeter
email: adrian@xxxxxxx

SUSE Linux GmbH, GF: Felix Imendörffer, Jane Smithard, Jennifer Guild, Dilip
Upmanyu, Graham Norton, HRB 21284 (AG Nürnberg)
Maxfeldstraße 5
90409 Nürnberg
Germany


--
To unsubscribe, e-mail: opensuse-buildservice+unsubscribe@xxxxxxxxxxxx
To contact the owner, e-mail: opensuse-buildservice+owner@xxxxxxxxxxxx

< Previous Next >
This Thread
  • No further messages