Commit 70ce5d7b authored by matty%chariot.net.au's avatar matty%chariot.net.au

Release notes updates.

parent 4c187616
...@@ -143,10 +143,6 @@ fix the problem on your installation. ...@@ -143,10 +143,6 @@ fix the problem on your installation.
*** SECURITY ISSUES RESOLVED *** *** SECURITY ISSUES RESOLVED ***
- The bug list sort order could take arbitrary SQL. There
are no known exploits for this problem.
(bug 130821)
- The bug reporter could set the priority even when - The bug reporter could set the priority even when
'letsubmitterchoosepriority' was off. 'letsubmitterchoosepriority' was off.
(bug 63018) (bug 63018)
...@@ -401,6 +397,12 @@ fix the problem on your installation. ...@@ -401,6 +397,12 @@ fix the problem on your installation.
corrupted. corrupted.
(bug 92263) (bug 92263)
- The bug list sort order is now stricter about the SQL it will accept,
ensuring you use correct column name syntax. Before this, there were
some syntax checks, so it is not known whether this problem was
exploitable.
(bug 130821)
******************************************** ********************************************
*** USERS UPGRADING FROM 2.14 OR EARLIER *** *** USERS UPGRADING FROM 2.14 OR EARLIER ***
******************************************** ********************************************
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment