11 Commits

Author SHA1 Message Date
mkanat%bugzilla.org
049206fa69 Bug 671612: Send "X-Content-Type-Options: nosniff" with every response
r/a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@263870 18797224-902f-48f8-a5cc-f745e15eee43
2012-05-29 15:16:07 +00:00
mkanat%bugzilla.org
2559c4caf8 Bug 744015: Fix 'use of uninitialized value in string' in PatchReader
r=gerv, a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@263798 18797224-902f-48f8-a5cc-f745e15eee43
2012-05-08 06:16:12 +00:00
mkanat%bugzilla.org
0b693cde00 2nd part of bug 731559: fix get_attachments_by_bug() everywhere
a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@263527 18797224-902f-48f8-a5cc-f745e15eee43
2012-03-06 21:01:31 +00:00
mkanat%bugzilla.org
3b5e8524aa Bug 680131: Replace the MPL 1.1 license by the MPL 2.0 one in all files, and add it to files which miss one
r=kiko r=mkanat r=mrbball a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@263258 18797224-902f-48f8-a5cc-f745e15eee43
2012-01-11 22:48:45 +00:00
mkanat%bugzilla.org
4e6c5e0ad5 Bug 637981: (CVE-2011-2379) [SECURITY] "Raw Unified" patch diffs can cause XSS on this domain in IE 6-8 and Safari
r/a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@262585 18797224-902f-48f8-a5cc-f745e15eee43
2011-08-04 20:49:57 +00:00
lpsolit%gmail.com
d166a2ff40 Bug 441921: context=file fails due to taint issues in file names and file rev numbers - Patch by Frédéric Buclin <LpSolit@gmail.com> r=himorin a=LpSolit
git-svn-id: svn://10.0.0.236/trunk@252681 18797224-902f-48f8-a5cc-f745e15eee43
2008-06-29 17:38:03 +00:00
lpsolit%gmail.com
80f0e8466a Bug 410902: Some characters are mangled in diff and interdiff modes when viewing patches - Patch by Frédéric Buclin <LpSolit@gmail.com> r=shimono, r=mkanat a=LpSolit
git-svn-id: svn://10.0.0.236/trunk@249044 18797224-902f-48f8-a5cc-f745e15eee43
2008-04-03 16:58:29 +00:00
lpsolit%gmail.com
5b26ba18fa Bug 365241: Changing the context of a patch fails - Patch by Frédéric Buclin <LpSolit@gmail.com> r=mkanat a=justdave
git-svn-id: svn://10.0.0.236/trunk@217554 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-30 01:58:28 +00:00
lpsolit%gmail.com
c5e32db020 Bug 346086: [SECURITY] attachment.cgi lets you view descriptions of private attachments even when you are not in the insidergroup - Patch by Frédéric Buclin <LpSolit@gmail.com> r=myk a=justdave
git-svn-id: svn://10.0.0.236/trunk@213649 18797224-902f-48f8-a5cc-f745e15eee43
2006-10-14 21:11:09 +00:00
mkanat%bugzilla.org
a66497562d Bug 352235: Use Bugzilla->localconfig everywhere instead of :localconfig from Bugzilla::Config
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=myk


git-svn-id: svn://10.0.0.236/trunk@211962 18797224-902f-48f8-a5cc-f745e15eee43
2006-09-18 22:16:44 +00:00
lpsolit%gmail.com
21783e31c3 Bug 343814: Move PatchReader specific code into a separate module - Patch by Frédéric Buclin <LpSolit@gmail.com> a=myk
git-svn-id: svn://10.0.0.236/trunk@206508 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-03 19:35:03 +00:00