Security Updates + One of RT's dependencies, the Perl module Email::Address, has a denial of service vulnerability which could induce a denial of service of RT itself. We recommend updating to Email::Address version 1.912 or later. The Email::Address vulnerabilities are assigned CVE-2015-7686 and CVE-2015-12558. CVE-2015-7686 was addressed in RT with a previous update. Email::Address version 1.912 addresses both of these CVEs with updates directly in the source module. + One of RT's dependencies, the Perl module Email::Address::List, relies on and operates similarly to Email::Address and therefore also has potential denial of service vulnerabilities. These vulnerabilities are assigned CVE-2018-18898. We recommend administrators install Email::Address::List version 0.06 or later. + An optional RT dependency, HTML::Gumbo, incorrectly escaped HTML in some cases. Since RT relies on this module to escape HTML content, it's possible this issue could allow malicious HTML to be displayed in RT. For RT's using this optional module, we recommend administrators install HTML::Gumbo version 0.18 or later. * The version of jQuery used in RT 4.2 and 4.4 has a Cross-site Scripting (XSS) vulnerability when using cross-domain Ajax requests. This vulnerability is assigned CVE-2015-9251. RT does not use this jQuery feature so it is not directly vulnerable. jQuery version 1.12 no longer receives official updates, however a fix was posted with recommendations for applications to patch locally, so RT will follow this recommendation and ship with a patched version. EU General Data Protection Regulation (GDPR) Several new features were added to support GDPR compliance and are summarized here. OBS-URL: https://build.opensuse.org/package/show/devel:languages:perl/request-tracker?expand=0&rev=61
91 lines
2.5 KiB
Bash
91 lines
2.5 KiB
Bash
#!/bin/bash
|
|
#
|
|
# This library is free software; you can redistribute it and/or modify it
|
|
# under the terms of the GNU Lesser General Public License as published by
|
|
# the Free Software Foundation; either version 2.1 of the License, or (at
|
|
# your option) any later version.
|
|
#
|
|
# This library is distributed in the hope that it will be useful, but
|
|
# WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
|
|
# Lesser General Public License for more details.
|
|
#
|
|
# You should have received a copy of the GNU Lesser General Public
|
|
# License along with this library; if not, write to the Free Software
|
|
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA
|
|
#
|
|
# /etc/init.d/request-tracker
|
|
#
|
|
### BEGIN INIT INFO
|
|
# Provides: request-tracker
|
|
# Required-Start: $remote_fs $syslog apache2
|
|
# Should-Start: smtp $time mysql postgresql
|
|
# Required-Stop: $remote_fs $syslog apache2
|
|
# Should-Stop: smtp $time mysql postgresql
|
|
# Default-Start: 3 5
|
|
# Default-Stop: 0 1 2 6
|
|
# Short-Description: Preparing script for Request Tracker
|
|
# Description: This script prepares the needed spool- and
|
|
# cache directories for Request Tracker during boot of the machine.
|
|
### END INIT INFO
|
|
|
|
RT_LOCALSTATEDIR='__RT_LOCALSTATEDIR__'
|
|
# File with user defined values
|
|
RT_SYSCONFIG='/etc/sysconfig/request-tracker'
|
|
|
|
if [ -r "$RT_SYSCONFIG" ]; then
|
|
. "$RT_SYSCONFIG"
|
|
else
|
|
echo "$RT_SYSCONFIG does not exist. Using $RT_LOCALSTATEDIR as localstate directory."
|
|
fi
|
|
|
|
. /etc/rc.status
|
|
rc_reset
|
|
|
|
case "$1" in
|
|
start)
|
|
echo -n "Preparing environment for Request Tracker "
|
|
/usr/sbin/request-tracker-prepare.sh
|
|
rc_status -v
|
|
;;
|
|
stop)
|
|
echo -n "Environment for Request Tracker cleaned up "
|
|
rc_status -v
|
|
;;
|
|
try-restart|condrestart)
|
|
if test "$1" = "condrestart"; then
|
|
echo "${attn} Use try-restart ${done}(LSB)${attn} rather than condrestart ${warn}(RH)${norm}"
|
|
fi
|
|
$0 status
|
|
if test $? = 0; then
|
|
$0 restart
|
|
else
|
|
rc_reset # Not running is not a failure.
|
|
fi
|
|
rc_status
|
|
;;
|
|
restart|reload)
|
|
$0 stop
|
|
$0 start
|
|
rc_status
|
|
;;
|
|
force-reload)
|
|
$0 try-restart
|
|
rc_status
|
|
;;
|
|
status)
|
|
echo -n "Chechking environment for Request Tracker "
|
|
if [ -d "$RT_LOCALSTATEDIR" ]; then
|
|
rc_failed 0
|
|
else
|
|
rc_failed 3
|
|
fi
|
|
rc_status -v
|
|
;;
|
|
*)
|
|
echo "Usage: $0 {start|stop|status|try-restart|restart|force-reload|reload}"
|
|
exit 1
|
|
;;
|
|
esac
|
|
rc_exit
|