--- - branch: pkgsrc-2017Q3 date: Sun Nov 12 13:15:45 UTC 2017 files: - new: 1.6.4.1 old: '1.6' path: pkgsrc/mail/roundcube/Makefile.common pathrev: pkgsrc/mail/roundcube/Makefile.common@1.6.4.1 type: modified - new: 1.57.4.1 old: '1.57' path: pkgsrc/mail/roundcube/distinfo pathrev: pkgsrc/mail/roundcube/distinfo@1.57.4.1 type: modified - new: 1.6.4.1 old: '1.6' path: pkgsrc/mail/roundcube-plugin-enigma/distinfo pathrev: pkgsrc/mail/roundcube-plugin-enigma/distinfo@1.6.4.1 type: modified - new: 1.6.4.1 old: '1.6' path: pkgsrc/mail/roundcube-plugin-password/distinfo pathrev: pkgsrc/mail/roundcube-plugin-password/distinfo@1.6.4.1 type: modified - new: 1.6.4.1 old: '1.6' path: pkgsrc/mail/roundcube-plugin-zipdownload/distinfo pathrev: pkgsrc/mail/roundcube-plugin-zipdownload/distinfo@1.6.4.1 type: modified id: 20171112T131545Z.3ee3e2b0d91de058463a8bbf18a2274db8e78d06 log: "Pullup ticket #5635 - requested by taca\nmail/roundcube: security update\nmail/roundcube-plugin-enigma: security update\nmail/roundcube-plugin-password: security update\nmail/roundcube-plugin-zipdownload: security update\n\nRevisions pulled up:\n- mail/roundcube-plugin-enigma/distinfo \ 1.7\n- mail/roundcube-plugin-password/distinfo 1.7\n- mail/roundcube-plugin-zipdownload/distinfo 1.7\n- mail/roundcube/Makefile.common \ 1.7\n- mail/roundcube/distinfo 1.58\n\n-------------------------------------------------------------------\n \ Module Name:\tpkgsrc\n Committed By:\ttaca\n Date:\t\tThu Nov 9 01:13:12 UTC 2017\n\n Modified Files:\n \tpkgsrc/mail/roundcube: Makefile.common distinfo\n \ \tpkgsrc/mail/roundcube-plugin-enigma: distinfo\n \tpkgsrc/mail/roundcube-plugin-password: distinfo\n \tpkgsrc/mail/roundcube-plugin-zipdownload: distinfo\n\n Log Message:\n \ mail/roundcube: update to 1.2.7\n\n Security fix for CVE-2017-16651.\n\n \ RELEASE 1.2.7\n -------------\n - Fix rewind(): stream does not support seeking (#5950)\n - Fix bug where HTML messages could have been rendered empty on some systems\n (#5957)\n - Fix (again) bug where image data URIs in css style were treated as\n evil/remote in mail preview (#5580)\n - Managesieve: Fix parsing dot-staffed lines in multiline text (#5838, #5959)\n - Fix file disclosure vulnerability caused by insufficient input validation\n [CVE-2017-16651] (#6026)\n\n To generate a diff of this commit:\n cvs rdiff -u -r1.6 -r1.7 pkgsrc/mail/roundcube/Makefile.common\n cvs rdiff -u -r1.57 -r1.58 pkgsrc/mail/roundcube/distinfo\n \ cvs rdiff -u -r1.6 -r1.7 pkgsrc/mail/roundcube-plugin-enigma/distinfo\n cvs rdiff -u -r1.6 -r1.7 pkgsrc/mail/roundcube-plugin-password/distinfo\n cvs rdiff -u -r1.6 -r1.7 pkgsrc/mail/roundcube-plugin-zipdownload/distinfo\n" module: pkgsrc subject: 'CVS commit: [pkgsrc-2017Q3] pkgsrc/mail' unixtime: '1510492545' user: spz