diff options
author | Tim Harder <radhermit@gentoo.org> | 2010-10-11 00:55:50 +0000 |
---|---|---|
committer | Tim Harder <radhermit@gentoo.org> | 2010-10-11 00:55:50 +0000 |
commit | abd7060db900f0f0aef305f059425b1c76573b17 (patch) | |
tree | cea9c33c7e8434b60c41cf1ea6a63c8c0bd57d2d /mail-client | |
parent | 2.2_rc92 version bump. This fixes a regression since 2.2_rc90 which can (diff) | |
download | historical-abd7060db900f0f0aef305f059425b1c76573b17.tar.gz historical-abd7060db900f0f0aef305f059425b1c76573b17.tar.bz2 historical-abd7060db900f0f0aef305f059425b1c76573b17.zip |
Remove old versions with security issues (bug #308065).
Package-Manager: portage-2.2_rc90/cvs/Linux x86_64
Diffstat (limited to 'mail-client')
-rw-r--r-- | mail-client/roundcube/ChangeLog | 7 | ||||
-rw-r--r-- | mail-client/roundcube/Manifest | 16 | ||||
-rw-r--r-- | mail-client/roundcube/files/roundcube-0.3.1-disable-dns-prefetching.patch | 40 | ||||
-rw-r--r-- | mail-client/roundcube/roundcube-0.3.1-r1.ebuild | 69 | ||||
-rw-r--r-- | mail-client/roundcube/roundcube-0.3.1.ebuild | 66 |
5 files changed, 14 insertions, 184 deletions
diff --git a/mail-client/roundcube/ChangeLog b/mail-client/roundcube/ChangeLog index 0d4f7a60b3be..0c4692c050c2 100644 --- a/mail-client/roundcube/ChangeLog +++ b/mail-client/roundcube/ChangeLog @@ -1,6 +1,11 @@ # ChangeLog for mail-client/roundcube # Copyright 1999-2010 Gentoo Foundation; Distributed under the GPL v2 -# $Header: /var/cvsroot/gentoo-x86/mail-client/roundcube/ChangeLog,v 1.32 2010/10/10 20:51:04 maekke Exp $ +# $Header: /var/cvsroot/gentoo-x86/mail-client/roundcube/ChangeLog,v 1.33 2010/10/11 00:55:50 radhermit Exp $ + + 11 Oct 2010; Tim Harder <radhermit@gentoo.org> -roundcube-0.3.1.ebuild, + -roundcube-0.3.1-r1.ebuild, + -files/roundcube-0.3.1-disable-dns-prefetching.patch: + Remove old versions with security issues (bug #308065). 10 Oct 2010; Markus Meier <maekke@gentoo.org> roundcube-0.4.ebuild: arm stable, bug #308065 diff --git a/mail-client/roundcube/Manifest b/mail-client/roundcube/Manifest index 3311a355cbfd..84863072416d 100644 --- a/mail-client/roundcube/Manifest +++ b/mail-client/roundcube/Manifest @@ -2,20 +2,20 @@ Hash: SHA1 AUX postinstall-en.txt 2513 RMD160 c2a04efcdd4007642221797a10877c2fc57ad874 SHA1 8bc888b2944694bbbadeddfe6f193c3a8a995a87 SHA256 5c1fa9d43f29158521188aae417654f968fb41662c46721b8183728df37eb4c4 -AUX roundcube-0.3.1-disable-dns-prefetching.patch 1656 RMD160 243c75c86acf470258ea7090f6366e3cfdaa877c SHA1 a6756874245a75c81ffa33cea4589ed4b66f3d18 SHA256 ff02b27918a1534958cae0fc84a80d430dce7aa77ca7550f258ea47a00d8e0ae -DIST roundcubemail-0.3.1.tar.gz 1917564 RMD160 1047e50a0476eb53a8b27df0b12e95ab187a1c41 SHA1 3927bb99c20210fc539130865d2654e96e2d5390 SHA256 78b7160e58fc3692591e8a909464a858500768e5e7a7c076b496a7caf119ddd1 DIST roundcubemail-0.4.2.tar.gz 2172565 RMD160 300daa39eb036236fbcddb4be66fbf8d4b206ff4 SHA1 73200648012894a0e524969317268fc2da2b9272 SHA256 0863ef8324d77033142d66a997bcd9b0c6d675320e9f4a926cb3e03d624d93e4 DIST roundcubemail-0.4.tar.gz 2159645 RMD160 fe2bee3104c7f0371fe76374e727fb5cb9b17112 SHA1 1ec80c6ff57a8913a53d3d8bb6eace0d20490ecc SHA256 1da2a57f0fa866cabc179d01c2a29c80dcf6108d45e415210129ef90ff8b2c1c -EBUILD roundcube-0.3.1-r1.ebuild 2051 RMD160 6dcf1afe4a86b66f8832b2093668f9f7c8b0968b SHA1 22d3cb61fa223c9e38228963157d4296321b5f5f SHA256 2a7dccde2f2d0e3502d561f4c87402fa3eb622da152892f3d61b1a1dda683844 -EBUILD roundcube-0.3.1.ebuild 1882 RMD160 eca129317d54272825e6783998dec4661a2ced36 SHA1 19ae136860254c7e43e36e75d538abc1f655c95d SHA256 9d94f7cb38cf3d2189fc64697dd618391b31a5be12ee37ada045fb1aa4089eee EBUILD roundcube-0.4.2.ebuild 1990 RMD160 892e85b17dc246231194ea61df29fb71e328010e SHA1 0c5f2e270d0e2b9cb0eb209eaf43c9f3c088e48d SHA256 9242906743268dc7c181f7a5aec5cf74eb264d2b6fd58009925771d45e4d8477 EBUILD roundcube-0.4.ebuild 1980 RMD160 2382508e9246f9464d39dc9d237f0ad879290083 SHA1 07eb15271784a9d85dfa482b6dd96f4211d46b8a SHA256 77b7fa156e2de8e29a1ee3225fa4198a1d16d8a5d32e0172fd8b6a9a088f1753 -MISC ChangeLog 4924 RMD160 5be26f6b94c5760eaf3de99903808d7d35b45d3c SHA1 621b5d8575e28470ef0908383993c8ab36a8e0b4 SHA256 3e4a4257fe2cb45f1d9e7b28f99b1b7b920f9f5a2990c55364f6ab9abae86ab1 +MISC ChangeLog 5146 RMD160 013f82bad9ab19982305b2d2acb3ef52474e563a SHA1 729f4bbf9b941942ad109196e2af64fd7d12681a SHA256 cc445da7ad0259f3ff1a4f34dbdfabe90ec8c4dfd108aa46fd1ac756291ede6b MISC metadata.xml 161 RMD160 d47e924599b33a35a50f4c9f5564d325c271f83b SHA1 5b91a6d8d06d3dca2d774425befba30caca51507 SHA256 9cd891fcf0af580e98b62d2f4ded9e53671599f5a7aafd5dce692b996d2a83f4 -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.16 (GNU/Linux) -iEYEARECAAYFAkyyJ14ACgkQkKaRLQcq0GLcXACfUyWu6Xe9GdulcWzheJmHFlx4 -8pYAnjnCkpBtycHNjPz8K2EZzHAvxsid -=ef0Z +iQEcBAEBAgAGBQJMsmCgAAoJEEqz6FtPBkyjrq4H/0gfb+6x9FlS2Ie/Rdugw9VE +UvA0MsOn1cSxUK3Pqt8+zpn5pnF/AtPjZYMbd6JyQIlixNszRHj9Wt1g/46Q9bKR +yt4vyCoeinWf2jlbhZnz6KTMJQbK79JnAuuT5Mh9rdWNMlZpI9+4zl7Uxs5r2sIU +usYi4KKDjl+l8YJ2mTLOEaP5t1xnKl4KiOqlfOGgWtqAm7eEN51dI/z9Fp7Pd28P +PTqH9lbS62f7eYj3EsgljmDs3HR4AIqJu7Dcjs/LzZAJdfKBwdxUzmVlWrGjjIXr +C9ewds3LLVutMaQA5n5i4YXRZg+Q8zEAwK9T8OS1H/kNrdZ75HiaKf2NCLaC1ck= +=L6g/ -----END PGP SIGNATURE----- diff --git a/mail-client/roundcube/files/roundcube-0.3.1-disable-dns-prefetching.patch b/mail-client/roundcube/files/roundcube-0.3.1-disable-dns-prefetching.patch deleted file mode 100644 index 0ec3c77b706e..000000000000 --- a/mail-client/roundcube/files/roundcube-0.3.1-disable-dns-prefetching.patch +++ /dev/null @@ -1,40 +0,0 @@ ---- roundcubemail-0.3.1.orig/CHANGELOG 2009-10-31 08:20:02.000000000 -0500 -+++ roundcubemail-0.3.1/CHANGELOG 2010-09-27 23:58:39.540056153 -0500 -@@ -1,6 +1,7 @@ - CHANGELOG RoundCube Webmail - =========================== - -+- Fix CVE-2010-0464: Disable DNS prefetching (#1486449)
- - Specify toolbar container in compose template (#1486247) - - Fix $_SERVER['HTTPS'] check for SSL forcing on IIS (#1486243) - - Avoid unnecessary page loads for selected tab (#1486032) ---- roundcubemail-0.3.1.orig/program/include/rcube_shared.inc 2009-10-27 04:43:39.000000000 -0500 -+++ roundcubemail-0.3.1/program/include/rcube_shared.inc 2010-09-27 23:58:39.541053001 -0500 -@@ -39,6 +39,8 @@ - header("Last-Modified: ".gmdate("D, d M Y H:i:s")." GMT"); - header("Cache-Control: private, must-revalidate, post-check=0, pre-check=0"); - header("Pragma: no-cache"); -+ // Request browser to disable DNS prefetching (CVE-2010-0464)
-+ header("X-DNS-Prefetch-Control: off");
- - // We need to set the following headers to make downloads work using IE in HTTPS mode. - if (rcube_https_check()) { ---- roundcubemail-0.3.1.orig/program/steps/mail/get.inc 2009-09-22 02:50:32.000000000 -0500 -+++ roundcubemail-0.3.1/program/steps/mail/get.inc 2010-09-28 00:00:16.001053823 -0500 -@@ -41,6 +41,7 @@ - $MESSAGE = new rcube_message(get_input_value('_uid', RCUBE_INPUT_GET)); - } - -+send_nocacheing_headers();
- - // show part page - if (!empty($_GET['_frame'])) { -@@ -66,8 +67,6 @@ - - $browser = new rcube_browser; - -- send_nocacheing_headers(); -- - // send download headers - if ($_GET['_download']) { - header("Content-Type: application/octet-stream"); diff --git a/mail-client/roundcube/roundcube-0.3.1-r1.ebuild b/mail-client/roundcube/roundcube-0.3.1-r1.ebuild deleted file mode 100644 index 778d8b875ed5..000000000000 --- a/mail-client/roundcube/roundcube-0.3.1-r1.ebuild +++ /dev/null @@ -1,69 +0,0 @@ -# Copyright 1999-2010 Gentoo Foundation -# Distributed under the terms of the GNU General Public License v2 -# $Header: /var/cvsroot/gentoo-x86/mail-client/roundcube/roundcube-0.3.1-r1.ebuild,v 1.1 2010/09/28 05:30:26 radhermit Exp $ - -EAPI="2" - -MY_PN="${PN}mail" -MY_P="${MY_PN}-${PV}" - -inherit webapp depend.php depend.apache - -DESCRIPTION="A browser-based multilingual IMAP client with an application-like user interface" -HOMEPAGE="http://roundcube.net" -SRC_URI="mirror://sourceforge/${MY_PN}/${MY_P}.tar.gz" - -# roundcube is GPL-licensed, the rest of the licenses here are -# for bundled PEAR components, googiespell and utf8.class.php -LICENSE="GPL-2 BSD PHP-2.02 PHP-3 MIT public-domain" -KEYWORDS="~amd64 ~arm ~ppc ~ppc64 ~sparc ~x86" -IUSE="ldap mysql postgres ssl spell" - -DEPEND="" -RDEPEND="|| ( <dev-lang/php-5.3[crypt,iconv,ldap?,pcre,postgres?,session,spl,ssl?,unicode] - >=dev-lang/php-5.3[crypt,iconv,ldap?,postgres?,session,ssl?,unicode] ) - !postgres? ( !mysql? ( dev-lang/php[sqlite] ) ) - spell? ( dev-lang/php[curl,spell] ) - dev-php/PEAR-PEAR" - -need_httpd_cgi -need_php_httpd - -S=${WORKDIR}/${MY_P} - -pkg_setup() { - use mysql && require_php_with_any_use mysql mysqli - - # add some warnings about optional functionality - if ! PHPCHECKNODIE="yes" require_php_with_any_use gd gd-external; then - ewarn "IMAP quota display will not work correctly without GD support in PHP." - ewarn "Recompile PHP with either gd or gd-external in USE if you want this feature." - ewarn - fi - - webapp_pkg_setup -} - -src_prepare() { - epatch "${FILESDIR}"/${P}-disable-dns-prefetching.patch - - cp config/db.inc.php{.dist,} - cp config/main.inc.php{.dist,} -} - -src_install () { - webapp_src_preinst - dodoc CHANGELOG INSTALL README UPGRADING - - insinto "${MY_HTDOCSDIR}" - doins -r [[:lower:]]* SQL - doins .htaccess - - webapp_serverowned "${MY_HTDOCSDIR}"/logs - webapp_serverowned "${MY_HTDOCSDIR}"/temp - - webapp_configfile "${MY_HTDOCSDIR}"/config/{db,main}.inc.php - webapp_postinst_txt en "${FILESDIR}"/postinstall-en.txt - webapp_postupgrade_txt en UPGRADING - webapp_src_install -} diff --git a/mail-client/roundcube/roundcube-0.3.1.ebuild b/mail-client/roundcube/roundcube-0.3.1.ebuild deleted file mode 100644 index 0452ca747622..000000000000 --- a/mail-client/roundcube/roundcube-0.3.1.ebuild +++ /dev/null @@ -1,66 +0,0 @@ -# Copyright 1999-2010 Gentoo Foundation -# Distributed under the terms of the GNU General Public License v2 -# $Header: /var/cvsroot/gentoo-x86/mail-client/roundcube/roundcube-0.3.1.ebuild,v 1.11 2010/08/12 08:09:16 a3li Exp $ - -EAPI="2" - -MY_PN="${PN}mail" -MY_P="${MY_PN}-${PV}" - -inherit webapp depend.php depend.apache - -DESCRIPTION="A browser-based multilingual IMAP client with an application-like user interface" -HOMEPAGE="http://roundcube.net" -SRC_URI="mirror://sourceforge/${MY_PN}/${MY_P}.tar.gz" - -# roundcube is GPL-licensed, the rest of the licenses here are -# for bundled PEAR components, googiespell and utf8.class.php -LICENSE="GPL-2 BSD PHP-2.02 PHP-3 MIT public-domain" -KEYWORDS="amd64 arm ppc ppc64 ~sparc x86" -IUSE="ldap mysql postgres ssl spell" - -DEPEND="" -RDEPEND="dev-lang/php[crypt,iconv,ldap?,pcre,postgres?,session,spl,ssl?,unicode] - !postgres? ( !mysql? ( dev-lang/php[sqlite] ) ) - spell? ( dev-lang/php[curl,spell] ) - dev-php/PEAR-PEAR -" - -need_httpd_cgi -need_php_httpd - -S=${WORKDIR}/${MY_P} - -pkg_setup() { - use mysql && require_php_with_any_use mysql mysqli - - # add some warnings about optional functionality - if ! PHPCHECKNODIE="yes" require_php_with_any_use gd gd-external; then - ewarn "IMAP quota display will not work correctly without GD support in PHP." - ewarn "Recompile PHP with either gd or gd-external in USE if you want this feature." - ewarn - fi - - webapp_pkg_setup -} - -src_prepare() { - mv config/db.inc.php{.dist,} - mv config/main.inc.php{.dist,} -} - -src_install () { - webapp_src_preinst - dodoc CHANGELOG INSTALL README UPGRADING - - insinto "${MY_HTDOCSDIR}" - doins -r [[:lower:]]* SQL - - webapp_serverowned "${MY_HTDOCSDIR}"/logs - webapp_serverowned "${MY_HTDOCSDIR}"/temp - - webapp_configfile "${MY_HTDOCSDIR}"/config/{db,main}.inc.php - webapp_postinst_txt en "${FILESDIR}"/postinstall-en.txt - webapp_postupgrade_txt en UPGRADING - webapp_src_install -} |