From MAILER-DAEMON Sun Nov 20 21:22:30 2005 Received: from mailman by lists.gnu.org with archive (Exim 4.43) id 1Ee1K9-00035W-TW for mharc-jinn-developer@gnu.org; Sun, 20 Nov 2005 21:22:29 -0500 Received: from mailman by lists.gnu.org with tmda-scanned (Exim 4.43) id 1Ee1K8-00034T-1y for jinn-developer@nongnu.org; Sun, 20 Nov 2005 21:22:28 -0500 Received: from exim by lists.gnu.org with spam-scanned (Exim 4.43) id 1Ee1K5-00033Q-R2 for jinn-developer@nongnu.org; Sun, 20 Nov 2005 21:22:27 -0500 Received: from [199.232.76.173] (helo=monty-python.gnu.org) by lists.gnu.org with esmtp (Exim 4.43) id 1Ee1K5-00033D-Gf for jinn-developer@nongnu.org; Sun, 20 Nov 2005 21:22:25 -0500 Received: from [203.16.214.203] (helo=smtp3.adl2.internode.on.net) by monty-python.gnu.org with esmtp (Exim 4.34) id 1Ee1K4-0002wr-Vq for jinn-developer@nongnu.org; Sun, 20 Nov 2005 21:22:25 -0500 Received: from mail.skwashd.homelinux.org (ppp166-100.static.internode.on.net [150.101.166.100]) by smtp3.adl2.internode.on.net (8.12.9/8.12.6) with ESMTP id jAL2LVkY000309; Mon, 21 Nov 2005 12:51:32 +1030 (CST) (envelope-from phpgw@skwashd.homelinux.org) Received: from localhost (localhost [127.0.0.1]) by mail.skwashd.homelinux.org (Postfix) with ESMTP id 044592865; Mon, 21 Nov 2005 13:21:30 +1100 (EST) Received: from mail.skwashd.homelinux.org ([127.0.0.1]) by localhost (cheapcrap [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 15103-06; Mon, 21 Nov 2005 13:21:29 +1100 (EST) Received: from woby.skwashd.lan (unknown [192.168.111.13]) by mail.skwashd.homelinux.org (Postfix) with ESMTP id BDB72C86; Mon, 21 Nov 2005 13:21:29 +1100 (EST) From: Dave Hall To: phpGroupWare users , phpGroupWare dev Content-Type: text/plain Organization: phpGroupWare Date: Mon, 21 Nov 2005 13:21:30 +1100 Message-Id: <1132539690.18623.29.camel@localhost.localdomain> Mime-Version: 1.0 X-Mailer: Evolution 2.4.1 Content-Transfer-Encoding: 7bit X-Virus-Scanned: by amavisd-new-20030616-p10 (Debian) at skwashd.homelinux.org Cc: anglemail@free-source.com, CK-ERP-en@googlegroups.com, jinn-developer@nongnu.org, support-picolibre@picolibre.enst-bretagne.fr Subject: [Jinn-developer] phpGroupWare 0.9.16.009 Security and Bug Fix Release is out X-BeenThere: jinn-developer@nongnu.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: jinn-developer.nongnu.org List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 21 Nov 2005 02:22:28 -0000 Hi all, You are encouraged to update to the latest version of phpGroupWare - 0.9.16.009. The release contains several major bug fixes as well as some important security fixes. You can grab the new version from - http://sourceforge.net/project/showfiles.php?group_id=7305 Or update from cvs $ cd /path/to/phpgroupware $ export CVS_RSH=ssh $ cvs update -dP Changelog is as follows: Fixes for the following security issues: * phpSysInfo - XSS CVE-2005-0870 - arbitrary file inclusion CVE-2005-3347 - anti XSS measure CVE-2005-3348 * FUDForum - arbitary code execution SA16627 Major bug fixes: - LDAP account returns only phpGroupWare accounts - accounts list pages and sorts properly - Next account id is properly generated - First group shows properly in ACL manager - Calendar footer now shows again - Calendar alarms can be set, editted and viewed - Fix apps to work with anti XSS code from 007/8 - News Admin - Sitemgr Additional languages and translated phrases We hope to have our website back up and running in the 24hours, so for the inconvenience this may be causing people. Cheers Dave -- Dave Hall (aka skwashd) API Coordinator phpGroupWare e skwashd@phpgroupware.org w phpgroupware.org