pkgsrc-Changes-HG archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

[pkgsrc/trunk]: pkgsrc/www/wordpress Security update to version 4.1.2.



details:   https://anonhg.NetBSD.org/pkgsrc/rev/83a52f6d8861
branches:  trunk
changeset: 650391:83a52f6d8861
user:      morr <morr%pkgsrc.org@localhost>
date:      Wed Apr 22 06:38:15 2015 +0000

description:
Security update to version 4.1.2.

Changes:

4.1.1:

Maintenance release, fixed 21 bugs.

4.1.2:

- A serious critical cross-site scripting vulnerability, which could enable
  anonymous users to compromise a site.
- Files with invalid or unsafe names could be uploaded.
- Some plugins are vulnerable to an SQL injection attack.
- A very limited cross-site scripting vulnerability could be used as part of a
  social engineering attack.
- Four hardening changes, including better validation of post titles within the
  Dashboard.

diffstat:

 www/wordpress/Makefile |  4 ++--
 www/wordpress/distinfo |  8 ++++----
 2 files changed, 6 insertions(+), 6 deletions(-)

diffs (26 lines):

diff -r 5944c11bfe31 -r 83a52f6d8861 www/wordpress/Makefile
--- a/www/wordpress/Makefile    Wed Apr 22 06:35:50 2015 +0000
+++ b/www/wordpress/Makefile    Wed Apr 22 06:38:15 2015 +0000
@@ -1,7 +1,7 @@
-# $NetBSD: Makefile,v 1.44 2015/01/02 12:40:59 morr Exp $
+# $NetBSD: Makefile,v 1.45 2015/04/22 06:38:15 morr Exp $
 
 DISTNAME=              wordpress-${VERSION}
-VERSION=               4.1
+VERSION=               4.1.2
 CATEGORIES=            www
 MASTER_SITES=          http://wordpress.org/
 
diff -r 5944c11bfe31 -r 83a52f6d8861 www/wordpress/distinfo
--- a/www/wordpress/distinfo    Wed Apr 22 06:35:50 2015 +0000
+++ b/www/wordpress/distinfo    Wed Apr 22 06:38:15 2015 +0000
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.36 2015/01/02 12:40:59 morr Exp $
+$NetBSD: distinfo,v 1.37 2015/04/22 06:38:15 morr Exp $
 
-SHA1 (wordpress-4.1.tar.gz) = f0437c96ae3d8acaba3579566f1346f4cd06468e
-RMD160 (wordpress-4.1.tar.gz) = d695827effaed5cc82341ae171d8a03df10cdc24
-Size (wordpress-4.1.tar.gz) = 6183711 bytes
+SHA1 (wordpress-4.1.2.tar.gz) = 9e9745bb8a1166622de866076eac73a49cb3eba0
+RMD160 (wordpress-4.1.2.tar.gz) = 2e0cb1f74cf65fb310fd44a246ce688f69feef6c
+Size (wordpress-4.1.2.tar.gz) = 6192717 bytes



Home | Main Index | Thread Index | Old Index