Overview

Request 320945 accepted

- Pass --enable-broken-httpd-auth to configure. Assumes all apache2
packages contain security patches regardless of their version number.
Should fix the build on SLES12 and perhaps elsewhere.

- fix mod_authz_svn build with -Wunused-variable
* subversion-1.8.14-unused-var-authnrequired.patch

- Apache Subversion 1.8.14
This release fixes two vulnerabilities:
* mod_authz_svn: do not leak information in mixed anonymous/authenticated
httpd (dav) configurations (CVE-2015-3184) bnc#939514
* do not leak paths that were hidden by path-based authz (CVE-2015-3187)
bnc#939517
Non-security fixes:
* document svn:autoprops
* fix 'svn cp ^/A/D/H@1 ^/A' to properly create A
* improve conflict prompts for binary files
* improve performance of 'ls -v'
* improved Sqlite 3.8.9 query performance
* fixed issue #4580: 'svn -v st' on file externals reports "?" for user/rev
* mod_dav_svn: do not ignore skel parsing errors
* detect invalid svndiff data earlier
* prevent possible repository corruption on power/disk failures
* fixed issue #4577: Read error with some repository nodes
* fixed issue #4531: server-side copy (over dav) is slow
* swig-pl: fix some stack memory problems
- Refreshed patch subversion-no-build-date.patch
- Remove obsoleted patch subversion-1.8.13-fix-sqlite-3.8.9-tests.patch
- Add patch subversion-1.8.14-httpd-version-number-detection.patch

Loading...
Request History
Tomáš Chvátal's avatar

scarabeus_iv created request

- Pass --enable-broken-httpd-auth to configure. Assumes all apache2
packages contain security patches regardless of their version number.
Should fix the build on SLES12 and perhaps elsewhere.

- fix mod_authz_svn build with -Wunused-variable
* subversion-1.8.14-unused-var-authnrequired.patch

- Apache Subversion 1.8.14
This release fixes two vulnerabilities:
* mod_authz_svn: do not leak information in mixed anonymous/authenticated
httpd (dav) configurations (CVE-2015-3184) bnc#939514
* do not leak paths that were hidden by path-based authz (CVE-2015-3187)
bnc#939517
Non-security fixes:
* document svn:autoprops
* fix 'svn cp ^/A/D/H@1 ^/A' to properly create A
* improve conflict prompts for binary files
* improve performance of 'ls -v'
* improved Sqlite 3.8.9 query performance
* fixed issue #4580: 'svn -v st' on file externals reports "?" for user/rev
* mod_dav_svn: do not ignore skel parsing errors
* detect invalid svndiff data earlier
* prevent possible repository corruption on power/disk failures
* fixed issue #4577: Read error with some repository nodes
* fixed issue #4531: server-side copy (over dav) is slow
* swig-pl: fix some stack memory problems
- Refreshed patch subversion-no-build-date.patch
- Remove obsoleted patch subversion-1.8.13-fix-sqlite-3.8.9-tests.patch
- Add patch subversion-1.8.14-httpd-version-number-detection.patch


Factory Auto's avatar

factory-auto added opensuse-review-team as a reviewer

Please review sources


Factory Auto's avatar

factory-auto added factory-repo-checker as a reviewer

Please review build success


Factory Auto's avatar

factory-auto accepted review

Check script succeeded


Saul Goodman's avatar

licensedigger accepted review


Dominique Leuenberger's avatar

dimstar accepted review

ok


Factory Repo Checker's avatar

factory-repo-checker accepted review

Builds for repo devel:tools:scm:svn/openSUSE_Tumbleweed


Max Lin's avatar

mlin7442 added as a reviewer

Being evaluated by staging project "openSUSE:Factory:Staging:adi:11"


Max Lin's avatar

mlin7442 accepted review

Picked openSUSE:Factory:Staging:adi:11


Dominique Leuenberger's avatar

dimstar accepted review

ready to accept


Dominique Leuenberger's avatar

dimstar approved review

ready to accept


Dominique Leuenberger's avatar

dimstar_suse accepted request

Accept to openSUSE:Factory

openSUSE Build Service is sponsored by