Overview
Request 646736 accepted
- Update to version 1.31.1
This is a security and maintenance release
of the MediaWiki 1.31 branch.
Changes since MediaWiki 1.31.0
- (task T169545, CVE-2018-0503) SECURITY: $wgRateLimits entry
for 'user' overrides 'newbie'.
- (task T194605, CVE-2018-0505) SECURITY: BotPasswords can bypass
CentralAuth's account lock.
- (task T199029, CVE-2018-13258) SECURITY: Tarball was missing
.htaccess files.
- (task T197229) Bundle Nuke extension, it was accidentally
omitted.
- (task T193995) Fix undefined patchPath() method call in parser
tests.
- (task T198687) Fix various selectFields methods to use
the string 'NULL', not null.
- Special:BotPasswords now requires reauthentication.
- (task T191608, (task T187638) Add 'logid' parameter
to Special:Log.
- (task T193829) Indicate when a Bot Password needs reset.
- (task T198037) GitInfo: Don't try shelling out if it's disabled.
- (task T151415) Log email changes.
- (task T197206) Fix performance regression when multiple DB
used without caching.
- (task T197030) PHPSessionHandler: Suppress headers warnings in
initialize().
- (task T182377, task T196793) Exif: Guard against uncountable
tag values.
- (task T200861) Fix total breakage of SQLite web upgrade.
- (task T200864) Fix pingback over-reporting on non-MySQL
databases
- (task T202550) Unbreak SpecialListusersHeaderForm and
SpecialListusersHeader hooks.
- rebase makealias.sh for apache >= 2.4 and new .htaccess
- Update to version 1.31.0
- requires PHP 7.0.0 or later. Although HHVM 3.18.5 or later is supported
See changelog at https://www.mediawiki.org/wiki/MediaWiki_1.31
(There are too many changes to list here)
@ecsos, thanks a lot. Did you test the new apache config?
Not at this time. My time is limited. But i have only copy original in it. Should work. When you will, i ca do it.
One of us should test it before I accept the req. I can do it next week.
So. I have tested and i think the whole package is broken. Not since my update. But before it. All styles, images and skins are not loaded.
Request History
ecsos created request
- Update to version 1.31.1
This is a security and maintenance release
of the MediaWiki 1.31 branch.
Changes since MediaWiki 1.31.0
- (task T169545, CVE-2018-0503) SECURITY: $wgRateLimits entry
for 'user' overrides 'newbie'.
- (task T194605, CVE-2018-0505) SECURITY: BotPasswords can bypass
CentralAuth's account lock.
- (task T199029, CVE-2018-13258) SECURITY: Tarball was missing
.htaccess files.
- (task T197229) Bundle Nuke extension, it was accidentally
omitted.
- (task T193995) Fix undefined patchPath() method call in parser
tests.
- (task T198687) Fix various selectFields methods to use
the string 'NULL', not null.
- Special:BotPasswords now requires reauthentication.
- (task T191608, (task T187638) Add 'logid' parameter
to Special:Log.
- (task T193829) Indicate when a Bot Password needs reset.
- (task T198037) GitInfo: Don't try shelling out if it's disabled.
- (task T151415) Log email changes.
- (task T197206) Fix performance regression when multiple DB
used without caching.
- (task T197030) PHPSessionHandler: Suppress headers warnings in
initialize().
- (task T182377, task T196793) Exif: Guard against uncountable
tag values.
- (task T200861) Fix total breakage of SQLite web upgrade.
- (task T200864) Fix pingback over-reporting on non-MySQL
databases
- (task T202550) Unbreak SpecialListusersHeaderForm and
SpecialListusersHeader hooks.
- rebase makealias.sh for apache >= 2.4 and new .htaccess
- Update to version 1.31.0
- requires PHP 7.0.0 or later. Although HHVM 3.18.5 or later is supported
See changelog at https://www.mediawiki.org/wiki/MediaWiki_1.31
(There are too many changes to list here)
lrupp accepted request
As nobody wants to do (accept/decline) this request, I'm accepting here for now. The submission does not break new things - and hopefully someone can fix the old stuff some time.
Thanks for your patience, Eric
So. I have tested and i think the whole package is broken. Not since my update. But before it. All styles, images and skins are not loaded.
I'll check it. Download of resources changed several times...
@weberho: review reminder
Hi Lars, There seem to be a bug in the config but I didn't have time to check/update so far...