Uploaded zope 2.1.6-1 (arm) to master
-----BEGIN PGP SIGNED MESSAGE-----
Format: 1.6
Date: Mon, 24 Apr 2000 19:20:53 +0200
Source: zope
Binary: zope
Architecture: arm
Version: 2.1.6-1
Distribution: frozen
Urgency: high
Maintainer: jim@federated.com
Description:
zope - The Z Object Publishing Environment
Changes:
zope (2.1.6-1) frozen unstable; urgency=high
.
* New upstream version: bug fixes.
.
* To the release manager: As you can see from changelog.gz, 2.1.6
and 2.1.5 were bug fix releases only. Among the fixed bugs are
two fixes for potential security holes, therefore I think this
release should go into potato:
.
- Fixed a bug that could allow someone with a lot of Zope zen
to change the apparent AUTHENTICATED_USER to access things
that they shouldn't.
.
- Fixed a potential security hole that could allow users with
permission to add Folders and edit DTML (and a who have a
lot of Zope zen) to get access to things that they shouldn't.
.
* Among the upstream bug fixes are our fixes from 2.1.4-3 and
2.1.4-2.
Files:
20a57f901c1e8f44a8834f0100f5fb95 1137470 web optional zope_2.1.6-1_arm.deb
-----BEGIN PGP SIGNATURE-----
Version: 2.6.3ia
Charset: noconv
iQCVAwUBOSIAUjb8oJEootMxAQGf9QP/dGsAzBWMdhWhmZT0UX2xZof5jx2Jc5UY
TeDSD0YSv+doxvpL5PWGgbgDz/44ed05OV6IM05x8zCN/tiHjKCVvivhHDEsZItQ
Xc7vLRFq7V9dTeET0E6QwNHfZ3mi9SeBUuN4G3Ygy+zWTNqg491IHiu4zmHnRbYA
Q7kJvoFvBj0=
=i0Fo
-----END PGP SIGNATURE-----
Reply to: