Commit Graph

21 Commits

Author SHA1 Message Date
sthen
80a725208d Update the Horde suite to current versions. devel/horde has SECURITY fixes
including XSS (prefs, MIME viewer) and preventing overwriting of webserver-
accessible files (image form fields, e.g. with Turba). For more information
see http://lists.horde.org/archives/announce/2009/000512.html.

Thanks Vijay Sankar, Michiel van Baak and Daniel Levai for testing/feedback.
2009-09-28 13:09:15 +00:00
mbalmer
0329cc04c1 Update to Horde 3.3.2
The major changes compared to Horde version 3.3.1 are:
    * Fix prototypejs regression on IE.
2008-12-13 08:53:19 +00:00
mbalmer
5813f48def Update to Horde 3.3.1 and fix a dependency in the package.
This is a minor security release that adds another check to the XSS
filter for an Internet Explorer exploit. All users are encouraged
to upgrade to this version.
2008-12-13 08:43:20 +00:00
mbalmer
0e15ae6559 Update to Horde 3.3 Beware that Horde has quite a lot of optional
modules.  These are not recorded as RUN_DEPENDS on purpose.
2008-10-30 09:41:07 +00:00
mbalmer
cb9548ce0b Security update to Horde 3.1.9. Fixes soem XSS problems. 2008-10-25 17:22:45 +00:00
mbalmer
bbafba1783 Security update to horde 3.1.7. 2008-05-07 20:12:10 +00:00
mbalmer
d90eecc05b Maintenance update to Horde 3.1.6
This is a bugfix release that also improves XSS (cross site scripting)
filters, used for example in HTML message viewers, and fixes privilege
escalations in the Horde API. All users are encouraged to upgrade to this
version.

Major changes compared to Horde 3.1.5 are:
    * Fixed privilege escalation in the Horde API.
    * Improved XSS filtering.
    * Fixed locked portal blocks.
    * Further improved webroot detection.
    * Updated Japanese translation.

The full list of changes (from version 3.1.5) can be viewed here:
http://cvs.horde.org/diff.php/horde/docs/CHANGES?r1=1.515.2.306&r2=1.515.2.312.2.2&ty=h
2008-01-09 22:36:43 +00:00
mbalmer
e05da2f779 Maintenance update to Horde 3.1.5
Major changes compared to Horde 3.1.4 are:
    * Improved webroot detection.
    * Fixed language selection in login screen.
    * Updated Czech, Estonian, German, Polish, Spanish, and Simplified
      Chinese translations.
    * Small bug fixes and improvements.

The full list of changes (from version 3.1.4) can be viewed here:

http://cvs.horde.org/diff.php/horde/docs/CHANGES?r1=1.515.2.298&r2=1.515.2.306&ty=h
2007-10-01 09:02:52 +00:00
mbalmer
9ce4107434 Update to Horde 3.1.4.
SECURITY:  This fixes several bugs and also security problems that exist in
previous versions.

See http://lists.horde.org/archives/announce/2007/000315.html for details.
2007-05-05 13:41:12 +00:00
espie
470294650d base64 distinfo with SHA256 2007-04-05 15:37:40 +00:00
mbalmer
85db52bd91 Update to Horde 3.1.3. This also fixes some security problems with the
previous version.

Horde now has a dependency on PostgreSQL, which is the default database.  If
you want to use MySQL instead, then use the mysql FLAVOR.  If you want to use
LDAP in addition to an SQL database, use the ldap FLAVOR.
2006-11-01 10:47:47 +00:00
mbalmer
28dc7d463e Update to horde-3.0.6 2005-10-31 15:02:34 +00:00
mbalmer
03e8e99353 Update to Horde 3.0.4.
ok robert@
2005-03-29 14:57:53 +00:00
mbalmer
9857d05438 Update to version 3.0.3
ok nikolay@
2005-03-09 07:07:15 +00:00
naddy
3f04f8f321 SIZE 2005-01-05 16:22:24 +00:00
avsm
025a0193e9 update to horde-2.2.5 2004-05-01 16:16:34 +00:00
avsm
797cb5be17 security update to horde-2.2.4 (session hijack fixes)
reminded by Soeren Thing Andersen <soeren@thing.dk>

2003-11-23 19:04:47 +00:00
avsm
4f4f1caa40 update to horde-2.2.3 2003-05-03 09:38:21 +00:00
avsm
3e60b60fff update to horde-2.2.1 with the new pear dependencies 2003-04-03 10:37:40 +00:00
avsm
14f4e11cea update to horde-2.1 2002-07-09 20:37:11 +00:00
avsm
c36aae1c69 initial import of horde-2.0
--
The Horde Project is a group of developers who write Web applications
using the Horde Application Framework, itself a product of the
Project.

The Horde Application Framework is written in PHP, and provides the
common tools a Web application requires: classes for dealing with
preferences, compression, browser detection, connection tracking,
MIME, and more.
2002-01-26 18:42:05 +00:00