81 Commits

Author SHA1 Message Date
mkanat%bugzilla.org
cc59d868e7 Bug 619594: (CVE-2010-4568) [SECURITY] Improve the randomness of
generate_random_password, to protect against an account compromise issue
and other critical vulnerabilities.
r=LpSolit, a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-3_6-BRANCH@261817 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 22:07:59 +00:00
mkanat%bugzilla.org
3894d17d04 Bug 591165: (CVE-2010-4411) [SECURITY] Bump minimum required version of CGI.pm to v3.51 in order to address header injection vulnerability.
[r=mkanat a=mkanat]


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-3_6-BRANCH@261784 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-21 21:22:55 +00:00
mkanat%bugzilla.org
b382f2321b Bug 591165: (CVE-2010-2761) [SECURITY] Bump minimum required version of CGI.pm to v3.50 in order to address header injection vulnerability.
[r=mkanat a=mkanat]


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-3_6-BRANCH@261557 18797224-902f-48f8-a5cc-f745e15eee43
2010-11-11 02:20:43 +00:00
mkanat%bugzilla.org
524a361c72 Bug 560691: Make sure that install-module.pl never prompts the user while
installing modules
r=mkanat, a=mkanat (module owner)


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-3_6-BRANCH@260213 18797224-902f-48f8-a5cc-f745e15eee43
2010-04-21 00:17:42 +00:00
mkanat%bugzilla.org
79db2419a8 Bug 560330: Make sure that we always have a modern version of CPAN
installed when running install-module.pl. Otherwise, certain modules
(like DateTime) weren't getting their XS compiled or their dependencies
installed with Perl 5.8.8 and earlier.

This also updates the urllist to remove perl.secsup.org (which was
hanging when used with curl) and add a few more mirrors (including
some in Europe).
r=mkanat, a=mkanat (module owner)


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-3_6-BRANCH@260211 18797224-902f-48f8-a5cc-f745e15eee43
2010-04-20 22:17:51 +00:00
lpsolit%gmail.com
f3603d4d7b Bug 208347: The version of Chart::Base below 2.1 cannot be determined accurately - Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat
git-svn-id: svn://10.0.0.236/trunk@259091 18797224-902f-48f8-a5cc-f745e15eee43
2009-11-26 02:02:07 +00:00
mkanat%bugzilla.org
98a5bbf59c Bug 430014: Re-write the code hooks system so that it uses modules instead of individual .pl files
Patch by Max Kanat-Alexander <mkanat@bugzilla.org> (module owner) a=mkanat


git-svn-id: svn://10.0.0.236/trunk@259069 18797224-902f-48f8-a5cc-f745e15eee43
2009-11-24 06:09:55 +00:00
mkanat%bugzilla.org
2f754434fc Fix for Bug 527505: Make t/001compile.t work even after Bugzilla::Install::CPAN messes with @INC, and make Bugzilla->feature work during mod_perl.pl.
Patch by Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@259008 18797224-902f-48f8-a5cc-f745e15eee43
2009-11-18 07:01:41 +00:00
mkanat%bugzilla.org
de04031a72 Bug 513593: Make the WebService taint incoming parameters
Patch by Max Kanat-Alexander <mkanat@bugzilla.org> r=dkl, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@258936 18797224-902f-48f8-a5cc-f745e15eee43
2009-11-09 18:27:53 +00:00
mkanat%bugzilla.org
9a2d53ce3a Bug 519584: Implement a framework for migrating from other bug-trackers, and start with a GNATS importer.
Patch by Max Kanat-Alexander <mkanat@bugzilla.org> (module owner) a=mkanat


git-svn-id: svn://10.0.0.236/trunk@258777 18797224-902f-48f8-a5cc-f745e15eee43
2009-10-24 05:31:42 +00:00
mkanat%bugzilla.org
bc7313feed Bug 520948: Use Bugzilla->feature and feature_enabled everywhere instead of checking if modules are installed
Patch by Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@258771 18797224-902f-48f8-a5cc-f745e15eee43
2009-10-24 05:21:11 +00:00
mkanat%bugzilla.org
1e9911e656 Bug 515991: Blacklist CGI 3.46 and 3.47 because CGI::Carp breaks Template Toolkit in those versions.
Patch by Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@258361 18797224-902f-48f8-a5cc-f745e15eee43
2009-09-11 16:58:49 +00:00
mkanat%bugzilla.org
e587df4eeb Bug 486306: Truncated XML-RPC response (incorrect content-length header)
Patch by Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@258323 18797224-902f-48f8-a5cc-f745e15eee43
2009-09-04 21:29:58 +00:00
lpsolit%gmail.com
69654005a0 Bug 257933: File::Spec version check does not work against 0.90 - Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat
git-svn-id: svn://10.0.0.236/trunk@258107 18797224-902f-48f8-a5cc-f745e15eee43
2009-08-13 21:45:34 +00:00
lpsolit%gmail.com
2b4f829545 Bug 480986: The BMP -> PNG conversion tool for new attachments should be an extension - Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat
git-svn-id: svn://10.0.0.236/trunk@258106 18797224-902f-48f8-a5cc-f745e15eee43
2009-08-13 21:32:27 +00:00
lpsolit%gmail.com
59efe475d7 Bug 507493: checksetup.pl's output should use colors for missing and too old Perl modules - Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat
git-svn-id: svn://10.0.0.236/trunk@258069 18797224-902f-48f8-a5cc-f745e15eee43
2009-08-12 13:05:44 +00:00
mkanat%bugzilla.org
64edf00d7e Bug 509054: Internationalize feature descriptions in checksetup.pl
Patch by Max Kanat-Alexander <mkanat@bugzilla.org> (module owner) a=mkanat


git-svn-id: svn://10.0.0.236/trunk@257972 18797224-902f-48f8-a5cc-f745e15eee43
2009-08-07 17:12:26 +00:00
lpsolit%gmail.com
cb7683d271 Bug 457524: Reports don't calculate totals correctly if one of the axes contain utf-8 data
and

Bug 469794: On windows, export bug list to CSV breaks because of extra line breaks

Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat


git-svn-id: svn://10.0.0.236/trunk@257791 18797224-902f-48f8-a5cc-f745e15eee43
2009-07-24 18:58:46 +00:00
lpsolit%gmail.com
ff7b3a51f4 Bug 503290: Email::Send 2.196 has a bug in the SMTP module - Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat
git-svn-id: svn://10.0.0.236/trunk@257718 18797224-902f-48f8-a5cc-f745e15eee43
2009-07-17 01:07:24 +00:00
mkanat%bugzilla.org
77e487efef Bug 486206: Quoted-printable bugmail had a =0D at the end of every line, because of a bug in Email::MIME::Encodings
Patch by Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@256952 18797224-902f-48f8-a5cc-f745e15eee43
2009-04-17 21:52:42 +00:00
mkanat%bugzilla.org
22d4b4a1bd Bug 432907: Create a JSON frontend for WebServices
Patch by Max Kanat-Alexander <mkanat@bugzilla.org> r=dkl, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@256768 18797224-902f-48f8-a5cc-f745e15eee43
2009-03-31 06:38:02 +00:00
mkanat%bugzilla.org
7eaedfb1f9 Bug 472872: Add a field where people can put the URLs to Bugzilla bugs (from any Bugzilla installation)
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=dkl, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@255886 18797224-902f-48f8-a5cc-f745e15eee43
2009-01-22 04:08:53 +00:00
mkanat%bugzilla.org
32a8bd304f Bug 473883: Re-arrange Perl module instructions so that required modules are listed at the end
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> (module owner) a=mkanat


git-svn-id: svn://10.0.0.236/trunk@255835 18797224-902f-48f8-a5cc-f745e15eee43
2009-01-16 03:37:53 +00:00
mkanat%bugzilla.org
70c2973491 Bug 460376: Make module-install instructions localizable.
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> (module owner) a=mkanat


git-svn-id: svn://10.0.0.236/trunk@255834 18797224-902f-48f8-a5cc-f745e15eee43
2009-01-16 02:18:16 +00:00
lpsolit%gmail.com
6db08caa61 Bug 472458: checksetup.pl should check for DateTime::TimeZone - Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat
git-svn-id: svn://10.0.0.236/trunk@255744 18797224-902f-48f8-a5cc-f745e15eee43
2009-01-07 18:45:55 +00:00
mkanat%bugzilla.org
8ca998914e Bug 471060: The mod_perl CGI requirement isn't necessary anymore
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@255702 18797224-902f-48f8-a5cc-f745e15eee43
2009-01-02 23:31:54 +00:00
mkanat%bugzilla.org
36dafcc096 Bug 211006: Make Bugzilla use SHA-256 instead of crypt() to store hashed passwords in the database
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@255694 18797224-902f-48f8-a5cc-f745e15eee43
2009-01-02 09:11:51 +00:00
mkanat%bugzilla.org
3ef17d8edf Bug 284184: Allow Bugzilla to use an asynchronous job queue for sending mail.
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> and Mark Smith <mark@plogs.net> r=glob, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@255634 18797224-902f-48f8-a5cc-f745e15eee43
2008-12-24 03:43:49 +00:00
mkanat%bugzilla.org
c0e5d412ed Bug 468009: SOAP::Lite versions greater than 0.68 and less than 0.710.06 return the wrong XML for methods
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@255374 18797224-902f-48f8-a5cc-f745e15eee43
2008-12-06 19:58:48 +00:00
lpsolit%gmail.com
47f0da6043 Bug 459163: checksetup.pl incorrectly displays "ppm install SASL-Authen" instead of Authen-SASL - Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat
git-svn-id: svn://10.0.0.236/trunk@254574 18797224-902f-48f8-a5cc-f745e15eee43
2008-10-09 16:07:37 +00:00
lpsolit%gmail.com
8a9a851608 Bug 182238: Allow users to choose what time zone to display times in - Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat
git-svn-id: svn://10.0.0.236/trunk@253854 18797224-902f-48f8-a5cc-f745e15eee43
2008-08-27 02:32:26 +00:00
reed%reedloden.com
d379f34dfc Bug 368502 - "Bugzilla_logincookie should not be accessible via javascript" [p=reed r+a=mkanat]
git-svn-id: svn://10.0.0.236/trunk@253792 18797224-902f-48f8-a5cc-f745e15eee43
2008-08-22 23:39:41 +00:00
lpsolit%gmail.com
f51d4deec1 Bug 450573: checksetup.pl gives "install-module --all" instructions on Windows - Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat
git-svn-id: svn://10.0.0.236/trunk@253682 18797224-902f-48f8-a5cc-f745e15eee43
2008-08-18 23:23:30 +00:00
gerv%gerv.net
87555adb56 Bug 441541 - Email::MIME->as_string gives SCALAR for body with mismatched Email:: modules. Patch by gerv; r,a=mkanat.
git-svn-id: svn://10.0.0.236/trunk@252570 18797224-902f-48f8-a5cc-f745e15eee43
2008-06-25 15:40:19 +00:00
wurblzap%gmail.com
ca3d7be2cc Bug 428569 – The CGI module's package name is CGI.pm.
Patch by Marc Schumann <wurblzap@gmail.com>;
r/a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@250111 18797224-902f-48f8-a5cc-f745e15eee43
2008-04-12 06:18:33 +00:00
wurblzap%gmail.com
c46c9d6e2a Bug 311563 – Make whining permit utf8 in whining reports.
Patch by Marc Schumann <wurblzap@gmail.com>;
r=mkanat; a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@249924 18797224-902f-48f8-a5cc-f745e15eee43
2008-04-09 14:27:33 +00:00
lpsolit%gmail.com
9a461bee19 Bug 416382: Adding an attachment with Perl 5.10 and CGI.pm < 3.33 throws a taint error - Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat
git-svn-id: svn://10.0.0.236/trunk@249785 18797224-902f-48f8-a5cc-f745e15eee43
2008-04-08 11:08:58 +00:00
mozilla%colinogilvie.co.uk
846a25d575 [Bug 424865] checksetup tells me that commands listed below need to be run as root
Patch by Colin Ogilvie <colin.ogilvie@gmail.com>; r+a: mkanat


git-svn-id: svn://10.0.0.236/trunk@248501 18797224-902f-48f8-a5cc-f745e15eee43
2008-03-24 23:04:36 +00:00
lpsolit%gmail.com
9228a2db7b Bug 304005: Implement SMTP authentication support for email notifications - Patch by Frédéric Buclin <LpSolit@gmail.com> r=mkanat a=LpSolit
git-svn-id: svn://10.0.0.236/trunk@247785 18797224-902f-48f8-a5cc-f745e15eee43
2008-03-14 00:05:37 +00:00
lpsolit%gmail.com
c25a110e92 Bug 414430: On Windows, checksetup.pl should mention the correct PPM repo based on the Perl version - Patch by Frédéric Buclin <LpSolit@gmail.com> r=mkanat r=glob a=LpSolit
git-svn-id: svn://10.0.0.236/trunk@245423 18797224-902f-48f8-a5cc-f745e15eee43
2008-02-11 19:34:05 +00:00
mkanat%bugzilla.org
f549e727f1 Bug 408766: Apache::DBI was unnecessary and was causing problems for some users.
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=justdave, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@241717 18797224-902f-48f8-a5cc-f745e15eee43
2007-12-19 00:42:00 +00:00
lpsolit%gmail.com
cc74e68e41 Bug 23473: Implement the ability to reverse the sort order in buglist.cgi ("Ascending" and "Descending") - Patch by Alex Schuilenburg <alex@schuilenburg.org> r/a=LpSolit
git-svn-id: svn://10.0.0.236/trunk@238477 18797224-902f-48f8-a5cc-f745e15eee43
2007-11-03 17:48:48 +00:00
mkanat%bugzilla.org
3aeb041e67 Bug 262269: A tool to auto-install missing perl packages on non-Windows systems
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> (module owner)


git-svn-id: svn://10.0.0.236/trunk@238039 18797224-902f-48f8-a5cc-f745e15eee43
2007-10-23 19:33:40 +00:00
mkanat%bugzilla.org
c05e1733e0 Bug 398798: checksetup.pl 'commands to install' should quote Perl module names
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@237333 18797224-902f-48f8-a5cc-f745e15eee43
2007-10-05 22:55:19 +00:00
mkanat%bugzilla.org
917611edbc Bug 389845: Remove setup.cgi from Bugzilla (no web-based installation)
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@231597 18797224-902f-48f8-a5cc-f745e15eee43
2007-08-07 19:13:01 +00:00
wurblzap%gmail.com
2ae6da445f Bug 380187 – Bugzilla should support RADIUS authentication.
Patch by Marc Schumann <wurblzap@gmail.com>;
r=mkanat, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@231372 18797224-902f-48f8-a5cc-f745e15eee43
2007-08-02 22:38:53 +00:00
mkanat%bugzilla.org
a1eb3fc636 Bug 375357: GD::Graph requires GD::Text (not vice-versa)
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> (module owner) a=mkanat


git-svn-id: svn://10.0.0.236/trunk@222383 18797224-902f-48f8-a5cc-f745e15eee43
2007-03-26 04:30:51 +00:00
mkanat%bugzilla.org
726b2aed0b Bug 375352: Building DBI requires PathTools
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> (module owner) a=mkanat


git-svn-id: svn://10.0.0.236/trunk@222380 18797224-902f-48f8-a5cc-f745e15eee43
2007-03-26 02:55:29 +00:00
mkanat%bugzilla.org
f5ecbcd40a Bug 375246: Installation is broken by "can't coerce array into hash"
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> (module owner) a=mkanat


git-svn-id: svn://10.0.0.236/trunk@222336 18797224-902f-48f8-a5cc-f745e15eee43
2007-03-25 04:44:58 +00:00
mkanat%bugzilla.org
73f90d54c2 Bug 192054: Bugzilla dependencies upgrade messages in wrong order
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> (module owner) a=mkanat


git-svn-id: svn://10.0.0.236/trunk@222120 18797224-902f-48f8-a5cc-f745e15eee43
2007-03-20 21:36:45 +00:00