summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorbsiegert <bsiegert@pkgsrc.org>2017-05-11 18:04:57 +0000
committerbsiegert <bsiegert@pkgsrc.org>2017-05-11 18:04:57 +0000
commit2ce7040caf939cdbdae9489cf2d65c9205f15536 (patch)
tree710f59011501bb3f0c1fea02c75c9da041c734d6
parentdcefb72c80bf71f908e48d25c6dacfaff8ad9666 (diff)
downloadpkgsrc-2ce7040caf939cdbdae9489cf2d65c9205f15536.tar.gz
Pullup ticket #5408 - requested by sevan
www/py-django-cms: security fix Revisions pulled up: - www/py-django-cms/Makefile 1.44 - www/py-django-cms/PLIST 1.30 - www/py-django-cms/distinfo 1.35 --- Module Name: pkgsrc Committed By: adam Date: Tue May 9 08:13:50 UTC 2017 Modified Files: pkgsrc/www/py-django-cms: Makefile PLIST distinfo Log Message: Changes 3.4.3: * Fixed a security vulnerability in the page redirect field which allowed users to insert JavaScript code. * Fixed a security vulnerability where the ``next`` parameter for the toolbar login was not sanitised and could point to another domain.
-rw-r--r--www/py-django-cms/Makefile4
-rw-r--r--www/py-django-cms/PLIST5
-rw-r--r--www/py-django-cms/distinfo10
3 files changed, 11 insertions, 8 deletions
diff --git a/www/py-django-cms/Makefile b/www/py-django-cms/Makefile
index 205dd9ab5cc..46b5b81d336 100644
--- a/www/py-django-cms/Makefile
+++ b/www/py-django-cms/Makefile
@@ -1,6 +1,6 @@
-# $NetBSD: Makefile,v 1.43 2017/02/02 07:54:11 adam Exp $
+# $NetBSD: Makefile,v 1.43.2.1 2017/05/11 18:04:57 bsiegert Exp $
-DISTNAME= django-cms-3.4.2
+DISTNAME= django-cms-3.4.3
PKGNAME= ${PYPKGPREFIX}-${DISTNAME}
CATEGORIES= www python
MASTER_SITES= ${MASTER_SITE_GITHUB:=divio/}
diff --git a/www/py-django-cms/PLIST b/www/py-django-cms/PLIST
index 0f1e99bd7f6..1070be405b6 100644
--- a/www/py-django-cms/PLIST
+++ b/www/py-django-cms/PLIST
@@ -1,4 +1,4 @@
-@comment $NetBSD: PLIST,v 1.29 2017/02/02 07:54:11 adam Exp $
+@comment $NetBSD: PLIST,v 1.29.2.1 2017/05/11 18:04:57 bsiegert Exp $
${PYSITELIB}/${EGG_INFODIR}/PKG-INFO
${PYSITELIB}/${EGG_INFODIR}/SOURCES.txt
${PYSITELIB}/${EGG_INFODIR}/dependency_links.txt
@@ -110,6 +110,9 @@ ${PYSITELIB}/cms/forms/fields.pyo
${PYSITELIB}/cms/forms/utils.py
${PYSITELIB}/cms/forms/utils.pyc
${PYSITELIB}/cms/forms/utils.pyo
+${PYSITELIB}/cms/forms/validators.py
+${PYSITELIB}/cms/forms/validators.pyc
+${PYSITELIB}/cms/forms/validators.pyo
${PYSITELIB}/cms/forms/widgets.py
${PYSITELIB}/cms/forms/widgets.pyc
${PYSITELIB}/cms/forms/widgets.pyo
diff --git a/www/py-django-cms/distinfo b/www/py-django-cms/distinfo
index bcb1a7a1a9f..b2274de2a85 100644
--- a/www/py-django-cms/distinfo
+++ b/www/py-django-cms/distinfo
@@ -1,6 +1,6 @@
-$NetBSD: distinfo,v 1.34 2017/02/02 07:54:11 adam Exp $
+$NetBSD: distinfo,v 1.34.2.1 2017/05/11 18:04:57 bsiegert Exp $
-SHA1 (django-cms-3.4.2.tar.gz) = f5fcbc7f27f20d3ef84a557e5fb33e52eb7f1f8c
-RMD160 (django-cms-3.4.2.tar.gz) = 0b2ce4431a665979c4a274ae83b4039e8ed8551e
-SHA512 (django-cms-3.4.2.tar.gz) = 5265f50edd2d84d361bdc98e03f20bb7da3a379efa1eada633eb6ccd04ed5a1facb45d8f04c2545c373ede2dd731ef2abdea1ab944e0d656640e508e537ff330
-Size (django-cms-3.4.2.tar.gz) = 5236544 bytes
+SHA1 (django-cms-3.4.3.tar.gz) = 8af432d7083ba5daa23e55a0b0a8bca41591a563
+RMD160 (django-cms-3.4.3.tar.gz) = f7dd71ad389c84e39acedb70862d8b80ab3e3d14
+SHA512 (django-cms-3.4.3.tar.gz) = 0c6b418bf025b042cefc4bb89fb663cc419a8e806a3c6e436198b7bb595d8012f79c7f02d08cee891e5e1ef83bd4f52f0e2adcc4ebd1d22325a674cbc7e69be9
+Size (django-cms-3.4.3.tar.gz) = 5234748 bytes