1
0
forked from pool/roundcubemail

Accepting request 858987 from server:php:applications

- update to 1.4.10:
  * Stored cross-site scripting (XSS) via HTML or plain text messages 
    with malicious content ( CVE-2020-35730 boo#1180399 )
  * Fix extra angle brackets in In-Reply-To header derived from mailto: params (#7655)
  * Fix folder list issue when special folder is a subfolder (#7647)
  * Fix Elastic's folder subscription toggle in search result (#7653)
  * Fix state of subscription toggle on folders list after changing 
    folder state from the search result (#7653)
  * Security: Fix cross-site scripting (XSS) via HTML or plain text 
    messages with malicious content

OBS-URL: https://build.opensuse.org/request/show/858987
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/roundcubemail?expand=0&rev=69
This commit is contained in:
Dominique Leuenberger 2020-12-28 12:56:00 +00:00 committed by Git OBS Bridge
commit 7492ffea80
6 changed files with 35 additions and 21 deletions

View File

@ -0,0 +1,3 @@
version https://git-lfs.github.com/spec/v1
oid sha256:a3d8c0dc4db70188f4aea3b62c1bd8b0b31b0c0f77f77138c0715e9d6ddd520f
size 7043181

View File

@ -0,0 +1,17 @@
-----BEGIN PGP SIGNATURE-----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=eeV7
-----END PGP SIGNATURE-----

View File

@ -1,3 +0,0 @@
version https://git-lfs.github.com/spec/v1
oid sha256:9fac7463a1365ac30c097dc03c3e22d17a73920fa728069c122e60b9d4c8ecb2
size 7043437

View File

@ -1,17 +0,0 @@
-----BEGIN PGP SIGNATURE-----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=aM0n
-----END PGP SIGNATURE-----

View File

@ -1,3 +1,17 @@
-------------------------------------------------------------------
Mon Dec 28 10:17:11 UTC 2020 - Lars Vogdt <lars@linux-schulserver.de>
- update to 1.4.10:
* Stored cross-site scripting (XSS) via HTML or plain text messages
with malicious content ( CVE-2020-35730 boo#1180399 )
* Fix extra angle brackets in In-Reply-To header derived from mailto: params (#7655)
* Fix folder list issue when special folder is a subfolder (#7647)
* Fix Elastic's folder subscription toggle in search result (#7653)
* Fix state of subscription toggle on folders list after changing
folder state from the search result (#7653)
* Security: Fix cross-site scripting (XSS) via HTML or plain text
messages with malicious content
------------------------------------------------------------------- -------------------------------------------------------------------
Tue Dec 1 14:37:42 UTC 2020 - pgajdos@suse.com Tue Dec 1 14:37:42 UTC 2020 - pgajdos@suse.com

View File

@ -20,7 +20,7 @@
%define roundcubeconfigpath %{_sysconfdir}/%{name} %define roundcubeconfigpath %{_sysconfdir}/%{name}
%define php_major_version %(php -r "echo PHP_MAJOR_VERSION;") %define php_major_version %(php -r "echo PHP_MAJOR_VERSION;")
Name: roundcubemail Name: roundcubemail
Version: 1.4.9 Version: 1.4.10
Release: 0 Release: 0
Summary: A browser-based multilingual IMAP client Summary: A browser-based multilingual IMAP client
License: GPL-3.0-or-later AND GPL-2.0-only AND BSD-3-Clause License: GPL-3.0-or-later AND GPL-2.0-only AND BSD-3-Clause