28 Commits

Author SHA1 Message Date
okan
284d92b8c4 Update to 2.1.26; includes CVE-2018-5950 fix.
ok bcallah@
2018-02-05 21:38:44 +00:00
rsadowski
4ada2bb3cb Update mailman to 2.1.25
ok okan@
2018-01-03 08:03:56 +00:00
okan
82c9e45f7c Update to 2.1.23; includes CVE-2016-6893 fix. 2016-09-06 13:44:22 +00:00
okan
0d118f1d26 Maintenance update to 2.1.22. 2016-04-28 13:02:39 +00:00
okan
4b4f3e74a6 - Update to 2.1.21.
- gc configure patch since it hasn't been required since introducing
  --without-permcheck in configure, despite the comment in Makefile.
- Some of Defaults.py are now upstream defaults.

Remove FLAVORs:
- Rewrite src/common.c:check_caller() for the cgi/mail wrapper to now
  look at the defined group membership instead, _mailmanq (a new group).
  This allows the administrator to switch mail servers and web servers
  without requiring a FLAVOR for each combination; but rather, by simply
  adding the cgi/mail user to the _mailmanq group. This is a diversion
  from upstream, but will be proposed. At least sthen@ and dlg@ agree to
  go in this general direction.
2016-04-22 16:42:14 +00:00
okan
87169e9161 update to 2.1.20; includes fix for CVE-2015-2775.
feeback ajacoutot; feedback and ok jca
2015-04-09 15:37:08 +00:00
okan
b211aaa844 minor update to 2.1.17
ok bcallah@
2014-01-22 21:49:52 +00:00
okan
e62c1ef26c update to 2.1.16
port-wise ok zhuk@
2013-11-06 17:26:08 +00:00
jasper
a4a944c820 - SECURITY UPDATE of mailman to 2.1.14
Fixes CVE-2010-3089: Mailman List Description Two Script Insertion Vulnerabilities

ok sthen@
2010-09-21 07:21:00 +00:00
djm
a9f955a145 mailman-2.1.12; ok MAINTAINER mbalmer@ 2009-05-02 09:56:44 +00:00
espie
9eafbbfb35 base64 checksums. 2007-04-05 16:19:55 +00:00
jakob
97683b8241 upgrade to mailman 2.1.9 2006-12-11 20:42:50 +00:00
jakob
4e6eeefcac upgrade to mailman 2.1.8; recommended upgrade as this fixes a cross-site
scripting security bug in the previous release (CVE-2006-1712).
2006-04-22 13:30:43 +00:00
jakob
da88118241 mailman v2.1.7 2006-01-21 15:03:32 +00:00
djm
85e40547bd mailman-2.16; ok jakob@ 2005-06-23 07:34:56 +00:00
naddy
a8817eabcc SIZE 2005-01-05 16:50:35 +00:00
jakob
a97c89fda4 update to mailman v2.1.5 2004-05-31 15:34:01 +00:00
jakob
9e09c634b2 upgrade to v2.1.4, take MAINTAINER 2004-01-01 17:29:08 +00:00
sturm
0ccdc3f026 - update to mailman 2.1.3
- drop maintainership
- use @extra
- get rid of WWW while here
2003-10-09 15:39:33 +00:00
sturm
9f59d47f92 update to mailman 2.1.2
- lots of bugfixes
- support for portuguese and polish

heads up and some testing by jakob
2003-05-01 16:11:53 +00:00
sturm
80b3c1e76a update to mailman 2.1.1
- includes bugfixes and security patches
- more localization
2003-02-10 22:18:25 +00:00
sturm
33a07d931f Add a distribution patch, to fix an XSS bug. This patch is a quick fix and
will be part of the upcomming 2.1.1 version of mailman.

thanks to jakob@ for the reminder
2003-01-27 10:47:04 +00:00
sturm
a1efcae363 update to mailman 2.1
- multi-lingual support
- list creation/removal through web interface
- MIME base content filtering (demime et.al.)
- new architecture of mail delivery subsystem
- better, faster, cheaper, ... ;-)

naddy@ OK
2003-01-18 16:52:17 +00:00
naddy
967d8d70ce Update to 2.0.12, use python 2.2.
From maintainer Nikolay Sturm <sturm@sec.informatik.tu-darmstadt.de>.

mailman changes:

- Implemented a guard against some reply loops and 'bot subscription
  attacks.  Specifically, if a message to -request has a Precedence:
  bulk (or list, or junk) header, the command is ignored.  Well-behaved
  'bots should always include such a header.

- Changes to the configure script so that you can pass in the mail host
  and web host by setting the environment variables MAILHOST and WWWHOST
  respectively.  configure will also exit if it can't figure out these
  values (usually due to broken dns).

- Closed another minor cross-site scripting vulnerability.
2002-07-20 20:18:02 +00:00
naddy
767c0fd826 SECURITY update to 2.0.11: Fix two cross-site scripting vulnerabilities.
From maintainer Nikolay Sturm <sturm@sec.informatik.tu-darmstadt.de>.
2002-05-23 16:17:23 +00:00
naddy
dbe0668987 Update to 2.0.10: bug fixes.
From  maintainer Nikolay Sturm <sturm@sec.informatik.tu-darmstadt.de>.
2002-05-14 01:04:18 +00:00
pvalchev
af91c7e620 mailman-2.0.8: a security update
from maintainer Nikolay.Sturm@desy.de
2001-12-02 08:21:53 +00:00
wilfried
a60b7a77bb two security fixes plus some minor regular bugfixes, from maintainer 2001-11-12 13:29:21 +00:00