X-Git-Url: http://git.vanrenterghem.biz/git.ikiwiki.info.git/blobdiff_plain/7b6063c6dd41da0100bc60b25ba86a82ec3eb207..9729c20898eb1ac0d48d32abd66e2945c410979d:/debian/changelog?ds=sidebyside diff --git a/debian/changelog b/debian/changelog index ca9a6c84b..a84008376 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,4 +1,4 @@ -ikiwiki (1.42) UNRELEASED; urgency=low +ikiwiki (1.42) unstable; urgency=low * Fix several more missing translations of Discussion. * Fix for missing backlinks() in pagestats plugin. @@ -23,8 +23,16 @@ ikiwiki (1.42) UNRELEASED; urgency=low * Add "reverse" option to inline to invert sort orders. * Drop the BSD license for the templates and basewiki, and just allow them to be used as close to public domain as possible. - - -- Joey Hess Thu, 8 Feb 2007 14:46:17 -0500 + * viewcvs is now viewvc (in Debian unstable), update everything to use the + new name. + * Fix a security hole that allowed a web user to edit images and other + non-page format files in the wiki. To exploit this, the file already had + to exist in the wiki, and the web user would need to somehow use the web + based editor to replace it with malicious content. + (Sorry Josh, this means you can't edit style.css directly anymore, + although I do appreciate your fixes, actually..) + + -- Joey Hess Sat, 10 Feb 2007 15:37:39 -0500 ikiwiki (1.41) unstable; urgency=low