The GNU Mailing List Manager

Edit Package mailman

This is the GNU Mailing List manager. Mailman provides an
easy-to-configure means of maintaining mailing lists including Web
administration. Mailman is written in Python.

Refresh
Refresh
Source Files (show unmerged sources)
Filename Size Changed
README.SuSE 0000005527 5.4 KB
SuSEconfig.mailman 0000004172 4.07 KB
SuSEconfig.mailman-SuSE 0000004290 4.19 KB
aliases 0000000127 127 Bytes
logrotate.mailman 0000000747 747 Bytes
mailman-2.1-manpages.tgz 0000007004 6.84 KB
mailman-2.1.14-CVE-2011-0707.patch 0000001234 1.21 KB
mailman-2.1.14-dataleak-remove-setgid.patch 0000000430 430 Bytes
mailman-2.1.14-misc-PACKAGES.diff 0000000937 937 Bytes
mailman-2.1.14-python.dif 0000001953 1.91 KB
mailman-2.1.14.tgz 0008201150 7.82 MB
mailman-2.1.2-list_lists.patch 0000001829 1.79 KB
mailman-2.1.3-editarch.patch 0000024784 24.2 KB
mailman-2.1.4-dirmode.patch 0000002490 2.43 KB
mailman-2.1.4-notavaliduser.patch 0000000430 430 Bytes
mailman-2.1.5-no_extra_asian.dif 0000000804 804 Bytes
mailman-SuSE.patch 0000021135 20.6 KB
mailman-SuSE2.patch 0000001460 1.43 KB
mailman-apache2.conf 0000000822 822 Bytes
mailman-python24.patch 0000000437 437 Bytes
mailman-weak-password.diff 0000000601 601 Bytes
mailman-wrapper.patch 0000003942 3.85 KB
mailman.changes 0000019925 19.5 KB
mailman.sgidlist 0000000426 426 Bytes
mailman.spec 0000009902 9.67 KB
mm-text.png 0000000216 216 Bytes
rcmailman 0000004970 4.85 KB
sysconfig.mailman 0000002493 2.43 KB
Latest Revision
Stefan Lijewski's avatar Stefan Lijewski (lijews) accepted request 123507 from Stefan Lijewski's avatar Stefan Lijewski (lijews) (revision 2)
-The last fix for bnc#697638 unfortunately added executable bits to all the files
in the /var/lib/mailman/archives directory (recursively), so I
changed it to modify only the permissions of
/var/lib/mailman/archives/private directory.

-Fixed bnc#697638 - VUL-1: mailman data leak, by changing directory
owners and permissions in spec file
-This also fixes bnc#750259, cloned as bnc#754623 - mailman logrotation
errors out because of non-root directory ownership

- fixed a XSS vulnerability in confirm.py (CVE-2011-0707, bnc#671745)

- update to 2.1.14:
 - Two potential XSS vulnerabilities have been identified and fixed.
 - Various i18n updates
 - A new feature for controlling the addition/replacement of the Sender:
   header in outgoing mail has been implemented.  This allows a list owner
   to set include_sender_header on the list's General Options page in the
   admin GUI.  The default for this setting is Yes which preserves the prior
   behavior of removing any pre-existing Sender: and setting it to the
   list's -bounces address.  Setting this to No stops Mailman from adding or
   modifying the Sender: at all.
 - long list of bug fixes and enhancements, see included NEWS for details

- updated patches to apply with fuzz=0
Comments 0
openSUSE Build Service is sponsored by