X-Git-Url: http://git.vanrenterghem.biz/git.ikiwiki.info.git/blobdiff_plain/5807f1de04aa7d3910e7f694e0d1e5613d8f5b41..1786b60fe75e889c58cecaf78305d342beabfa00:/debian/changelog diff --git a/debian/changelog b/debian/changelog index d1a3d0b3a..c01b697e3 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,4 +1,140 @@ -ikiwiki (2.50) UNRELEASED; urgency=low +ikiwiki (2.53.5) stable-security; urgency=high + + * htmlscrubber: Security fix: In data:image/* uris, only allow a few + whitelisted image types. No svg. + + -- Joey Hess Fri, 12 Mar 2010 15:19:29 -0500 + +ikiwiki (2.53.4) stable-security; urgency=high + + * teximg: Replace the insufficient blacklist with the built-in security + mechanisms of TeX. (CVE-2009-2944) + * img: Don't generate new verison of image if it is scaled to be + larger in either dimension. + + -- Joey Hess Fri, 28 Aug 2009 23:42:51 -0400 + +ikiwiki (2.53.3) testing-proposed-updates; urgency=low + + * Avoid crash on malformed utf-8 discovered by intrigeri. + * orphans: Fix unquoted page name in regexp. + + -- Joey Hess Thu, 09 Oct 2008 19:12:18 -0400 + +ikiwiki (2.53.2) testing-proposed-updates; urgency=low + + * Fix bad patch backport that broke generation of rss/atom feeds. Closes: #498224 + + -- Joey Hess Mon, 08 Sep 2008 11:40:27 -0400 + +ikiwiki (2.53.1) testing-proposed-updates; urgency=low + + * Backported all relevant bug fixes from mainline to debian testing. + * ikiwiki-transition: Fix command-line processing so the prefix_directives + transition works again. + * Fixes creation of pages when clicking on WikiLinks starting with "/". + * Change deb dependencies to list Text::Markdown before markdown, since + the former, while slower, has a much better html parser that avoids + numerous bugs. + * smileys: Some fixes for escaped smileys. + * smileys: Note that smileys need to be double-escaped for the escaping to + work. Markdown removes one level of escaping. + * Add a postscan hook. + * search: Use postscan hook, avoid updating index when previewing. + * search: Fixes for title stemming, and use better term for tags. + (Gabriel McManus) + (Rebuilding the wiki on upgrade to this version is recommended if you + use the search plugin.) + * meta: fix title() PageSpec (DOS). Closes: #497444 + * Really fix bug with links to pages with names containing colons. + Previous fix mised a few cases. + * toggle: Fix incompatability between javascript and webkit. + * toggle: Fix for when html got tidied. Closes: #492529 (Enrico Zini) + * inline: Ignore parent dirs when sorting pages by title. + * external: Fix support for hooks called in an array context. + * edittemplate: Don't wipe out edits on preview. + * map: The fix for #449285 was buggy and broke display of parents in certian + circumstances. + * Work around perl $_ scoping nonsense that caused breakage when loading + external plugins. + + -- Joey Hess Fri, 05 Sep 2008 20:55:53 -0400 + +ikiwiki (2.53) unstable; urgency=low + + * search: generate configuration files once only when rebuilding + (Gabriel McManus) + * attachment: Fix an uninitialised value warning when editing a page + that currently has no attachments. + * Fix a bug with links to pages whose names contained colons. + * attachment: Support old versions of CGI.pm that lack an upload method. + * Include ikiwiki.setup in examples in the debian package. + * attachment: Support perl 5.8's buggy version of CGI.pm. + * otl: Support utf-8 files. (Recai Oktaş) + + -- Joey Hess Wed, 09 Jul 2008 16:45:33 -0400 + +ikiwiki (2.52) unstable; urgency=low + + * attachment: New plugin for uploading and managing attachments. + This includes a fairly powerful PageSpec based admin pref for deciding + whether to accept a given upload, and an attachment management interface + on the edit page. + (Sponsored by The TOVA Company.) + * If attachments are not enabled, configure CGI.pm to disable file + uploads by default. (An anti-DOS measure.) + * toggle: Add support for toggles that are open by default. + * toggle: Fix to work in preview mode. + * toggle: Add javascript to top of page, not to end. This avoids flicker + since closed toggles will not be displayed as the page is loading. + * The editpage form now uses the raw page name, not the page title, in its + 'page' cgi parameter. Using the title was ambiguous and made it + impossible to tell between some pages, like "foo/bar" and "foo__47__bar", + sometimes causing the wrong page to be edited. + * This change means that some edit links need to be updated. + Force a rebuild on upgrade to this version. + * Above change also allowed really fixing escaped slashes from the blogpost + form. + + -- Joey Hess Sun, 06 Jul 2008 19:15:37 -0400 + +ikiwiki (2.51) unstable; urgency=low + + * Improve toplevel parentlink to link directly to index.html when usedirs is + disabled. + * map: Add a "show" parameter. "show=title" can be used to display page + titles, rather than the default page name. Based on a patch from + Jaldhar H. Vyas, Closes: #484510 + * hnb: New plugin, contributed by Axel Beckert. + * meta: Store "description" in pagestate for use by other plugins. + * map: Support show=description. + * textile: The Text::Textile perl module has some regexps that fail if + input is flagged as utf-8, but contains invalid characters such as 0x92. + To prevent it from crashing, re-encode the content before calling it, + which will ensure that it's really utf-8. + * Version the suggests of xapian-omega to a version known to be new enough + to work with ikiwiki. Reportedly, version 0.9.9 is too old to work. + Closes: #486592 + * creole: New plugin from Bernd Zeimetz. Closes: #486930 + * aggregate: Add template parameter. + * Add support for the universal edit button + (To get this on all pages of an exiting wiki, rebuild the wiki.) + * txt: New plugin, contributed by Gabriel McManus. + * smiley: Generate links relative to the destpage. (Fixes a reversion from + 2.41.) + * toc: Revert change in 2.45 that made it run at sanitize time. That broke + use of toc in a sidebar. + * Call format hooks when generating page previews, thus fixing toc display + there, as well as fixing inlins to again display in page previews, since + it's started using format hooks. This also allows several other things, + like embed, that use format hooks, to work during page preview time. + * Format hooks should not rely on getting an entire html document, as they + will only get the body during page preview. + * toggle: Deal with preview mode when adding javascript. + + -- Joey Hess Sun, 29 Jun 2008 14:09:37 -0400 + +ikiwiki (2.50) unstable; urgency=low * img: Support captions. * img: Don't generate empty title attributes, etc. @@ -7,7 +143,7 @@ ikiwiki (2.50) UNRELEASED; urgency=low * search: Work around xapian bug #486138 by only stemming locales in a whitelist. - -- Joey Hess Sat, 07 Jun 2008 23:04:00 -0400 + -- Joey Hess Fri, 13 Jun 2008 15:17:30 -0400 ikiwiki (2.49) unstable; urgency=low