Fri Jan 13 11:27:17 2012 UTC ()
Update mediawiki to 1.17.2.

== MediaWiki 1.17.2 ==
2012-01-11

This a maintenance and security release of the MediaWiki 1.17 branch.

=== Security changes ===
* (bug 33117) prop=revisions allows deleted text to be exposed through cache pollution.

=== Changes since 1.17.1 ===
* (bug 32709) Private Wiki users were always taken to Special:Badtitle on login.

== MediaWiki 1.17.1 ==

2011-11-24

This a maintenance and security release of the MediaWiki 1.17 branch.

=== Security changes ===
* (bug 32276) Skins were generating output using the internal page title which
  would allow anonymous users to determine wheter a page exists, potentially
  leaking private data. In fact, the curid and oldid request parameters would
  allow page titles to be enumerated even when they are not guessable.
* (bug 32616) action=ajax requests were dispatched to the relevant internal
  functions without any read permission checks being done. This could lead to
  data leakage on private wikis.


(obache)
diff -r1.17 -r1.18 pkgsrc/www/mediawiki/Makefile
diff -r1.6 -r1.7 pkgsrc/www/mediawiki/PLIST
diff -r1.10 -r1.11 pkgsrc/www/mediawiki/distinfo

cvs diff -r1.17 -r1.18 pkgsrc/www/mediawiki/Makefile (expand / switch to unified diff)

--- pkgsrc/www/mediawiki/Makefile 2011/09/16 05:46:27 1.17
+++ pkgsrc/www/mediawiki/Makefile 2012/01/13 11:27:17 1.18
@@ -1,37 +1,36 @@ @@ -1,37 +1,36 @@
1# $NetBSD: Makefile,v 1.17 2011/09/16 05:46:27 obache Exp $ 1# $NetBSD: Makefile,v 1.18 2012/01/13 11:27:17 obache Exp $
2 2
3DISTNAME= mediawiki-${VER}.${PVER} 3DISTNAME= mediawiki-${VER}.${PVER}
4PKGREVISION= 2 
5CATEGORIES= www 4CATEGORIES= www
6MASTER_SITES= http://download.wikimedia.org/mediawiki/${VER}/ 5MASTER_SITES= http://download.wikimedia.org/mediawiki/${VER}/
7 6
8MAINTAINER= pkgsrc-users@NetBSD.org 7MAINTAINER= pkgsrc-users@NetBSD.org
9HOMEPAGE= http://www.mediawiki.org/ 8HOMEPAGE= http://www.mediawiki.org/
10COMMENT= Free software wiki package originally written for Wikipedia 9COMMENT= Free software wiki package originally written for Wikipedia
11LICENSE= gnu-gpl-v2 10LICENSE= gnu-gpl-v2
12 11
13EGDIR= share/examples/mediawiki 12EGDIR= share/examples/mediawiki
14MEDIAWIKI= ${PREFIX}/share/mediawiki 13MEDIAWIKI= ${PREFIX}/share/mediawiki
15 14
16PKG_DESTDIR_SUPPORT= user-destdir 15PKG_DESTDIR_SUPPORT= user-destdir
17INSTALLATION_DIRS= ${EGDIR} share/mediawiki 16INSTALLATION_DIRS= ${EGDIR} share/mediawiki
18 17
19.include "../../mk/bsd.prefs.mk" 18.include "../../mk/bsd.prefs.mk"
20.include "options.mk" 19.include "options.mk"
21 20
22PKG_INSTALLATION_TYPES= overwrite pkgviews 21PKG_INSTALLATION_TYPES= overwrite pkgviews
23VER= 1.17 22VER= 1.17
24PVER= 0 23PVER= 2
25 24
26APACHE_USER?= www 25APACHE_USER?= www
27APACHE_GROUP?= www 26APACHE_GROUP?= www
28BUILD_DEFS+= APACHE_USER APACHE_GROUP 27BUILD_DEFS+= APACHE_USER APACHE_GROUP
29 28
30PKG_SYSCONFSUBDIR?= httpd 29PKG_SYSCONFSUBDIR?= httpd
31MESSAGE_SUBST+= PKG_SYSCONFDIR=${PKG_SYSCONFDIR} 30MESSAGE_SUBST+= PKG_SYSCONFDIR=${PKG_SYSCONFDIR}
32 31
33CONF_FILES= ${PREFIX}/${EGDIR}/mediawiki.conf \ 32CONF_FILES= ${PREFIX}/${EGDIR}/mediawiki.conf \
34 ${PKG_SYSCONFDIR}/mediawiki.conf 33 ${PKG_SYSCONFDIR}/mediawiki.conf
35 34
36NO_CONFIGURE= YES 35NO_CONFIGURE= YES
37NO_BUILD= YES 36NO_BUILD= YES

cvs diff -r1.6 -r1.7 pkgsrc/www/mediawiki/PLIST (expand / switch to unified diff)

--- pkgsrc/www/mediawiki/PLIST 2011/07/08 08:19:27 1.6
+++ pkgsrc/www/mediawiki/PLIST 2012/01/13 11:27:17 1.7
@@ -1,14 +1,14 @@ @@ -1,14 +1,14 @@
1@comment $NetBSD: PLIST,v 1.6 2011/07/08 08:19:27 abs Exp $ 1@comment $NetBSD: PLIST,v 1.7 2012/01/13 11:27:17 obache Exp $
2share/examples/mediawiki/mediawiki.conf 2share/examples/mediawiki/mediawiki.conf
3share/mediawiki/COPYING 3share/mediawiki/COPYING
4share/mediawiki/CREDITS 4share/mediawiki/CREDITS
5share/mediawiki/FAQ 5share/mediawiki/FAQ
6share/mediawiki/HISTORY 6share/mediawiki/HISTORY
7share/mediawiki/INSTALL 7share/mediawiki/INSTALL
8share/mediawiki/README 8share/mediawiki/README
9share/mediawiki/RELEASE-NOTES 9share/mediawiki/RELEASE-NOTES
10share/mediawiki/StartProfiler.sample 10share/mediawiki/StartProfiler.sample
11share/mediawiki/UPGRADE 11share/mediawiki/UPGRADE
12share/mediawiki/api.php 12share/mediawiki/api.php
13share/mediawiki/api.php5 13share/mediawiki/api.php5
14share/mediawiki/bin/svnstat 14share/mediawiki/bin/svnstat
@@ -1216,26 +1216,27 @@ share/mediawiki/maintenance/migrateUserG @@ -1216,26 +1216,27 @@ share/mediawiki/maintenance/migrateUserG
1216share/mediawiki/maintenance/minify.php 1216share/mediawiki/maintenance/minify.php
1217share/mediawiki/maintenance/moveBatch.php 1217share/mediawiki/maintenance/moveBatch.php
1218share/mediawiki/maintenance/mssql/tables.sql 1218share/mediawiki/maintenance/mssql/tables.sql
1219share/mediawiki/maintenance/mwdocgen.php 1219share/mediawiki/maintenance/mwdocgen.php
1220share/mediawiki/maintenance/namespaceDupes.php 1220share/mediawiki/maintenance/namespaceDupes.php
1221share/mediawiki/maintenance/nextJobDB.php 1221share/mediawiki/maintenance/nextJobDB.php
1222share/mediawiki/maintenance/nukeNS.php 1222share/mediawiki/maintenance/nukeNS.php
1223share/mediawiki/maintenance/nukePage.php 1223share/mediawiki/maintenance/nukePage.php
1224share/mediawiki/maintenance/oracle/archives/patch-testrun.sql 1224share/mediawiki/maintenance/oracle/archives/patch-testrun.sql
1225share/mediawiki/maintenance/oracle/archives/patch_16_17_schema_changes.sql 1225share/mediawiki/maintenance/oracle/archives/patch_16_17_schema_changes.sql
1226share/mediawiki/maintenance/oracle/archives/patch_create_17_functions.sql 1226share/mediawiki/maintenance/oracle/archives/patch_create_17_functions.sql
1227share/mediawiki/maintenance/oracle/archives/patch_fk_rename_deferred.sql 1227share/mediawiki/maintenance/oracle/archives/patch_fk_rename_deferred.sql
1228share/mediawiki/maintenance/oracle/archives/patch_namespace_defaults.sql 1228share/mediawiki/maintenance/oracle/archives/patch_namespace_defaults.sql
 1229share/mediawiki/maintenance/oracle/archives/patch_remove_not_null_empty_defs.sql
1229share/mediawiki/maintenance/oracle/patch_seq_names_pre1.16.sql 1230share/mediawiki/maintenance/oracle/patch_seq_names_pre1.16.sql
1230share/mediawiki/maintenance/oracle/tables.sql 1231share/mediawiki/maintenance/oracle/tables.sql
1231share/mediawiki/maintenance/oracle/user.sql 1232share/mediawiki/maintenance/oracle/user.sql
1232share/mediawiki/maintenance/orphans.php 1233share/mediawiki/maintenance/orphans.php
1233share/mediawiki/maintenance/ourusers.php 1234share/mediawiki/maintenance/ourusers.php
1234share/mediawiki/maintenance/patchSql.php 1235share/mediawiki/maintenance/patchSql.php
1235share/mediawiki/maintenance/populateCategory.php 1236share/mediawiki/maintenance/populateCategory.php
1236share/mediawiki/maintenance/populateLogSearch.php 1237share/mediawiki/maintenance/populateLogSearch.php
1237share/mediawiki/maintenance/populateLogUsertext.php 1238share/mediawiki/maintenance/populateLogUsertext.php
1238share/mediawiki/maintenance/populateParentId.php 1239share/mediawiki/maintenance/populateParentId.php
1239share/mediawiki/maintenance/populateRevisionLength.php 1240share/mediawiki/maintenance/populateRevisionLength.php
1240share/mediawiki/maintenance/populateSha1.php 1241share/mediawiki/maintenance/populateSha1.php
1241share/mediawiki/maintenance/postgres/archives/patch-category.sql 1242share/mediawiki/maintenance/postgres/archives/patch-category.sql
@@ -1723,26 +1724,27 @@ share/mediawiki/skins/common/images/be-t @@ -1723,26 +1724,27 @@ share/mediawiki/skins/common/images/be-t
1723share/mediawiki/skins/common/images/bullet.gif 1724share/mediawiki/skins/common/images/bullet.gif
1724share/mediawiki/skins/common/images/button_bold.png 1725share/mediawiki/skins/common/images/button_bold.png
1725share/mediawiki/skins/common/images/button_extlink.png 1726share/mediawiki/skins/common/images/button_extlink.png
1726share/mediawiki/skins/common/images/button_headline.png 1727share/mediawiki/skins/common/images/button_headline.png
1727share/mediawiki/skins/common/images/button_hr.png 1728share/mediawiki/skins/common/images/button_hr.png
1728share/mediawiki/skins/common/images/button_image.png 1729share/mediawiki/skins/common/images/button_image.png
1729share/mediawiki/skins/common/images/button_italic.png 1730share/mediawiki/skins/common/images/button_italic.png
1730share/mediawiki/skins/common/images/button_link.png 1731share/mediawiki/skins/common/images/button_link.png
1731share/mediawiki/skins/common/images/button_math.png 1732share/mediawiki/skins/common/images/button_math.png
1732share/mediawiki/skins/common/images/button_media.png 1733share/mediawiki/skins/common/images/button_media.png
1733share/mediawiki/skins/common/images/button_nowiki.png 1734share/mediawiki/skins/common/images/button_nowiki.png
1734share/mediawiki/skins/common/images/button_sig.png 1735share/mediawiki/skins/common/images/button_sig.png
1735share/mediawiki/skins/common/images/button_template.png 1736share/mediawiki/skins/common/images/button_template.png
 1737share/mediawiki/skins/common/images/cc-0.png
1736share/mediawiki/skins/common/images/cc-by-nc-sa.png 1738share/mediawiki/skins/common/images/cc-by-nc-sa.png
1737share/mediawiki/skins/common/images/cc-by-sa.png 1739share/mediawiki/skins/common/images/cc-by-sa.png
1738share/mediawiki/skins/common/images/closewindow.png 1740share/mediawiki/skins/common/images/closewindow.png
1739share/mediawiki/skins/common/images/critical-32.png 1741share/mediawiki/skins/common/images/critical-32.png
1740share/mediawiki/skins/common/images/cyrl/LICENSE 1742share/mediawiki/skins/common/images/cyrl/LICENSE
1741share/mediawiki/skins/common/images/cyrl/button_bold.png 1743share/mediawiki/skins/common/images/cyrl/button_bold.png
1742share/mediawiki/skins/common/images/cyrl/button_italic.png 1744share/mediawiki/skins/common/images/cyrl/button_italic.png
1743share/mediawiki/skins/common/images/cyrl/button_link.png 1745share/mediawiki/skins/common/images/cyrl/button_link.png
1744share/mediawiki/skins/common/images/de/button_bold.png 1746share/mediawiki/skins/common/images/de/button_bold.png
1745share/mediawiki/skins/common/images/de/button_italic.png 1747share/mediawiki/skins/common/images/de/button_italic.png
1746share/mediawiki/skins/common/images/diffunderline.gif 1748share/mediawiki/skins/common/images/diffunderline.gif
1747share/mediawiki/skins/common/images/download-32.png 1749share/mediawiki/skins/common/images/download-32.png
1748share/mediawiki/skins/common/images/fa/button_bold.png 1750share/mediawiki/skins/common/images/fa/button_bold.png

cvs diff -r1.10 -r1.11 pkgsrc/www/mediawiki/distinfo (expand / switch to unified diff)

--- pkgsrc/www/mediawiki/distinfo 2011/07/08 08:19:27 1.10
+++ pkgsrc/www/mediawiki/distinfo 2012/01/13 11:27:17 1.11
@@ -1,5 +1,5 @@ @@ -1,5 +1,5 @@
1$NetBSD: distinfo,v 1.10 2011/07/08 08:19:27 abs Exp $ 1$NetBSD: distinfo,v 1.11 2012/01/13 11:27:17 obache Exp $
2 2
3SHA1 (mediawiki-1.17.0.tar.gz) = 1d08e1832264311c94e027f31aa997ef84944b6d 3SHA1 (mediawiki-1.17.2.tar.gz) = ffaa528ce62527813af21f30022c0c7d8511b641
4RMD160 (mediawiki-1.17.0.tar.gz) = c98bacd34e8abe3e66804a2fde40db2d88b36c0d 4RMD160 (mediawiki-1.17.2.tar.gz) = ab3eaad170c9083a046fff1abe00499fef320dc5
5Size (mediawiki-1.17.0.tar.gz) = 14369593 bytes 5Size (mediawiki-1.17.2.tar.gz) = 14923943 bytes