[DRE-commits] r5023 - trunk/redmine/debian/patches

Jérémy Lal kapouer-guest at alioth.debian.org
Sat Mar 27 18:40:47 UTC 2010


Author: kapouer-guest
Date: 2010-03-27 18:40:35 +0000 (Sat, 27 Mar 2010)
New Revision: 5023

Added:
   trunk/redmine/debian/patches/changeset_r3613.diff
Modified:
   trunk/redmine/debian/patches/series
Log:
Add another upstream security fix.

Added: trunk/redmine/debian/patches/changeset_r3613.diff
===================================================================
--- trunk/redmine/debian/patches/changeset_r3613.diff	                        (rev 0)
+++ trunk/redmine/debian/patches/changeset_r3613.diff	2010-03-27 18:40:35 UTC (rev 5023)
@@ -0,0 +1,15 @@
+Upstream security fix : Escape revision on repository view
+Author : Jean-Philippe Lang
+
+Index: trunk/app/views/repositories/_breadcrumbs.rhtml
+===================================================================
+--- trunk/app/views/repositories/_breadcrumbs.rhtml	(revision 3612)
++++ trunk/app/views/repositories/_breadcrumbs.rhtml	(revision 3613)
+@@ -16,6 +16,6 @@
+     / <%= link_to h(filename), :action => 'changes', :id => @project, :path => to_path_param("#{link_path}/#{filename}"), :rev => @rev %>
+ <% end %>
+ 
+-<%= "@ #{revision}" if revision %>
++<%= "@ #{h revision}" if revision %>
+ 
+ <% html_title(with_leading_slash(path)) -%>

Modified: trunk/redmine/debian/patches/series
===================================================================
--- trunk/redmine/debian/patches/series	2010-03-27 18:40:19 UTC (rev 5022)
+++ trunk/redmine/debian/patches/series	2010-03-27 18:40:35 UTC (rev 5023)
@@ -20,3 +20,4 @@
 0020-application-rb-for-rails2.2.patch
 changeset_r3611.diff
 changeset_r3612.diff
+changeset_r3613.diff




More information about the Pkg-ruby-extras-commits mailing list