X-Git-Url: http://git.vanrenterghem.biz/git.ikiwiki.info.git/blobdiff_plain/28409cd358d5ff17e2c340298988e8baf86fd5f5..4db4e589e4c73f076b666a77b86743695454a3ce:/debian/changelog diff --git a/debian/changelog b/debian/changelog index 031403830..e2a861c3c 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,8 +1,110 @@ -ikiwiki (3.20161220) UNRELEASED; urgency=medium +ikiwiki (3.20170112) UNRELEASED; urgency=medium - * Add CVE references for CVE-2016-10026 + * t/git-cgi.t: Wait 1 second before doing a revert that should work. + This hopefully fixes a race condition in which the test failed + around 6% of the time. (Closes: 862494) + * Guard against set-but-empty REMOTE_USER CGI variable on + misconfigured nginx servers, and in general treat sessions with + a set-but-empty name as if they were not signed in. + * When the CGI fails, print the error to stderr, not "Died" + * mdwn: Don't mangle