Author: kotkov
Date: Mon Apr 13 12:38:30 2015
New Revision: 1673173
URL: http://svn.apache.org/r1673173
Log:
* STATUS: Nominate two security fixes (r1667233, r1667235) that were
released as a part of 1.8.13 and 1.7.20, but did not make it into
/branches/1.9.x. Put these nominations into 1.9.0 blocker section.
Modified:
subversion/branches/1.9.x/STATUS
Modified: subversion/branches/1.9.x/STATUS
URL:
http://svn.apache.org/viewvc/subversion/branches/1.9.x/STATUS?rev=1673173&r1=1673172&r2=1673173&view=diff
==============================================================================
--- subversion/branches/1.9.x/STATUS (original)
+++ subversion/branches/1.9.x/STATUS Mon Apr 13 12:38:30 2015
@@ -39,6 +39,20 @@ Release blockers for 1.9.0:
Votes:
+1: rhuijben, steveking
+ * r1667233
+ Reject invalid get-location-segments requests in mod_dav_svn and svnserve.
+ Justification:
+ Security issue.
+ Votes:
+ +1: kotkov
+
+ * r1667235
+ Reject invalid transaction property change requests in mod_dav_svn.
+ Justification:
+ Security issue.
+ Votes:
+ +1: kotkov
+
Candidate changes that cannot go into a later 1.9.x:
====================================================