214810 Commits

Author SHA1 Message Date
mkanat%bugzilla.org
d87638b2e2 Bug 807937: Fix POD
r/a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264398 18797224-902f-48f8-a5cc-f745e15eee43
2012-11-02 13:02:41 +00:00
mkanat%bugzilla.org
06d7430968 Bug 805649: Release notes for Bugzilla 4.0.9
r=dkl


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264391 18797224-902f-48f8-a5cc-f745e15eee43
2012-10-30 21:30:43 +00:00
mkanat%bugzilla.org
ae0d2cb19e Fix typo
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264338 18797224-902f-48f8-a5cc-f745e15eee43
2012-10-13 21:31:56 +00:00
mkanat%bugzilla.org
e42aec1148 Bug 790909: Editing dependencies from the "Change Several Bugs at Once" page does not work as expected (bug IDs are incorrectly parsed)
r=dkl a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264300 18797224-902f-48f8-a5cc-f745e15eee43
2012-10-04 16:02:22 +00:00
mkanat%bugzilla.org
6e74e81608 Bug 757935: Bugs with resolution MOVED cannot be edited
r=glob a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264289 18797224-902f-48f8-a5cc-f745e15eee43
2012-10-03 17:46:25 +00:00
mkanat%bugzilla.org
f1d58bbf00 Bug 790215 - Flag names are not properly escaped when displayed on confirm user match page
[r=LpSolit a=LpSolit]


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264212 18797224-902f-48f8-a5cc-f745e15eee43
2012-09-11 19:29:05 +00:00
mkanat%bugzilla.org
8a1f56d99a Bumped version post-release
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264186 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-30 20:32:17 +00:00
mkanat%bugzilla.org
ddca5da73e Bump version to 4.0.8
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264182 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-30 19:16:21 +00:00
mkanat%bugzilla.org
6e111ef217 Bug 785470: (CVE-2012-3981) [SECURITY] Missing escaping of the username can lead to LDAP injection
r/a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264179 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-30 18:33:26 +00:00
mkanat%bugzilla.org
df4ee7c380 Bug 785522: [SECURITY] Block access to templates in extensions/
r=glob a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264178 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-30 18:32:13 +00:00
mkanat%bugzilla.org
3052af6d3b Bug 786352: Release notes for Bugzilla 4.0.8
r=dkl a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264172 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-29 14:47:48 +00:00
mkanat%bugzilla.org
5698f83886 Bug 785917: Custom field descriptions are not properly escaped when displayed as bug list column headers
r=glob a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264161 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-27 18:32:07 +00:00
mkanat%bugzilla.org
72066c1233 Bug 682317 - Bug.create is incorrectly documented as ignoring invalid fields; it should say it produces an error
r=dkl, a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264114 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-03 17:01:30 +00:00
mkanat%bugzilla.org
752dc36b8f Bumped version post release
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264081 18797224-902f-48f8-a5cc-f745e15eee43
2012-07-26 23:01:15 +00:00
mkanat%bugzilla.org
2e174ba9dd Bump version to 4.0.7
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264077 18797224-902f-48f8-a5cc-f745e15eee43
2012-07-26 21:45:41 +00:00
mkanat%bugzilla.org
5902c5d0cb Bug 777586: (CVE-2012-1969) [SECURITY] The description of private attachments is still visible to unauthorized users when mentioned in a comment
r=glob a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264073 18797224-902f-48f8-a5cc-f745e15eee43
2012-07-26 21:16:55 +00:00
mkanat%bugzilla.org
db54375ddd Bug 777675: Release notes for Bugzilla 4.0.7
r=dkl a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264067 18797224-902f-48f8-a5cc-f745e15eee43
2012-07-26 14:00:44 +00:00
mkanat%bugzilla.org
3869f341e1 Bug 776103 - Syntax error in Bugzilla::User::Setting API doc
r/a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@264065 18797224-902f-48f8-a5cc-f745e15eee43
2012-07-25 21:46:57 +00:00
mkanat%bugzilla.org
d063d8405c Bug 768870: The "Un-forget the search" link has no token
r=glob a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263995 18797224-902f-48f8-a5cc-f745e15eee43
2012-06-27 16:16:21 +00:00
mkanat%bugzilla.org
be17459875 Bug 754561 - Escape HTML in keywords in the auto-complete form
[r=LpSolit a=LpSolit]


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263869 18797224-902f-48f8-a5cc-f745e15eee43
2012-05-29 15:01:23 +00:00
mkanat%bugzilla.org
fd56c90478 Bug 756314: Fix dropping of unique matches when the "confirm page" page is display.
r=LpSolit, a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263865 18797224-902f-48f8-a5cc-f745e15eee43
2012-05-28 17:00:39 +00:00
mkanat%bugzilla.org
179912ff95 Bumping the version post-release
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263718 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-18 22:33:02 +00:00
mkanat%bugzilla.org
92ca787774 Bump version to 4.0.6
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263713 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-18 18:01:39 +00:00
mkanat%bugzilla.org
040f94dd9e Bug 745397: (CVE-2012-0466) [SECURITY] The JS template for buglists permits attackers to access all bugs that the victim can see
r=glob a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263712 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-18 17:08:02 +00:00
mkanat%bugzilla.org
620b5cd8ec Bug 728639: (CVE-2012-0465) [SECURITY] User lockout policy can be bypassed by altering the X-FORWARDED-FOR header
r=glob a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263711 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-18 17:06:52 +00:00
mkanat%bugzilla.org
4400d3c7bb Bug 746547: SMALLSERIAL is of type INT2, not INT1
r=timello a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263709 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-18 15:04:18 +00:00
mkanat%bugzilla.org
97a1e9d4ca Bug 741077: Update relnotes for 4.0.6
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263701 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-17 19:31:39 +00:00
mkanat%bugzilla.org
40308feb00 Bug 741077: Release notes for Bugzilla 4.0.6
r=dkl


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263676 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-12 19:16:08 +00:00
mkanat%bugzilla.org
bb5b08cc57 Bug 733458: The "creator" argument is listed twice for the Bug.search WebService method
r/a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263598 18797224-902f-48f8-a5cc-f745e15eee43
2012-03-22 19:02:53 +00:00
mkanat%bugzilla.org
f3065f9da3 Bug 731725 - In the documentation license, the address of the FSF is incorrect
r=dkl, a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263512 18797224-902f-48f8-a5cc-f745e15eee43
2012-03-01 23:05:25 +00:00
mkanat%bugzilla.org
6a9ee8dc21 Bug 731219: Fix XMLRPC breakage when content-type contains a charset
r=dkl, a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263500 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-29 05:03:15 +00:00
mkanat%bugzilla.org
70171d44fb Bug 696352: Required fields have broken colors
r/a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263485 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-25 14:35:20 +00:00
dlawrence%mozilla.com
8019024a98 Bumped version number post-release
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263472 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-22 18:23:23 +00:00
dlawrence%mozilla.com
7aacd6d91b Rolled back version bump for 4.0.5+
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263470 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-22 18:06:22 +00:00
mkanat%bugzilla.org
821166867d Bumped the version number post-release
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263467 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-22 15:46:57 +00:00
mkanat%bugzilla.org
c9dea496d4 Bumped version to 4.0.5
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263466 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-22 15:34:33 +00:00
mkanat%bugzilla.org
d568f97c43 Bug 725663 - (CVE-2012-0453) [SECURITY] CSRF vulnerability in the XML-RPC API when using mod_perl
r/a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263465 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-22 15:32:12 +00:00
mkanat%bugzilla.org
198f8c249d Bug 727893: Release notes for Bugzilla 4.0.5
r=dkl a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263442 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-17 20:16:29 +00:00
mkanat%bugzilla.org
d7dc40e0c6 Test 1 fails if PERLLIB contains paths with whitespace.
r=gerv; a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263412 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-15 18:04:20 +00:00
mkanat%bugzilla.org
26e2568713 Bug 727240: The POD for Bug.attachments is wrong about the format of the returned data
r=dkl a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263407 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-14 22:24:30 +00:00
mkanat%bugzilla.org
72649d145a Bug 722161: Clickjacking is possible in "View All" with HTML attachments
r=dkl a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263364 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-08 16:02:50 +00:00
mkanat%bugzilla.org
6885029fd3 Bump the version number post-release
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263354 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-01 00:04:54 +00:00
mkanat%bugzilla.org
f33b3eda26 Bumped to correct date
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263351 18797224-902f-48f8-a5cc-f745e15eee43
2012-01-31 17:31:47 +00:00
mkanat%bugzilla.org
36ebe12ba3 Bumped to version 4.0.4
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263344 18797224-902f-48f8-a5cc-f745e15eee43
2012-01-31 16:47:04 +00:00
mkanat%bugzilla.org
d21ff6ea40 Bug 718319: (CVE-2012-0440) [SECURITY] JSON-RPC permits to bypass token checks and can lead to CSRF (no victim's action required)
r=mkanat a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263341 18797224-902f-48f8-a5cc-f745e15eee43
2012-01-31 16:16:56 +00:00
mkanat%bugzilla.org
ebeabba5e8 Bug 714472: (CVE-2012-0448) [SECURITY] utf8 homoglyphs are allowed in email addresses, which could allow an attacker to be CC'ed to private bugs by accident
r=glob a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263337 18797224-902f-48f8-a5cc-f745e15eee43
2012-01-31 15:48:18 +00:00
mkanat%bugzilla.org
c9895bf644 Bug 720752 - Release notes for Bugzilla 4.0.4
r/a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263322 18797224-902f-48f8-a5cc-f745e15eee43
2012-01-27 22:16:47 +00:00
mkanat%bugzilla.org
d0ce1035af Bug 469068: SMTP parameters not documented
r/a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263293 18797224-902f-48f8-a5cc-f745e15eee43
2012-01-21 11:20:52 +00:00
mkanat%bugzilla.org
ebdff28520 Bug 715733 - When deleting a user account, related data in the profile_search table is not removed
r/a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263264 18797224-902f-48f8-a5cc-f745e15eee43
2012-01-12 22:16:52 +00:00
mkanat%bugzilla.org
2c239363ec Bug 591638: In the admin page, the link to edit field values is named 'Field Values', not 'Legal Values'
r/a=LpSolit


git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@263253 18797224-902f-48f8-a5cc-f745e15eee43
2012-01-11 12:35:15 +00:00