Re: [Zope] SECURITY alert and hotfix release

2000-12-09 Thread Andrew Kuchling
On Fri, Dec 08, 2000 at 05:40:13PM -0500, Shane Hathaway wrote: > AFAICT 2.1.6 is not vulnerable. Verifying this on our server, this turns out to be quite correct; Zope 2.1.6 does not demonstrate the problem repaired by the hotfix. --amk ___ Zope mail

[Zope] Re: [Zope-Annce] SECURITY alert and hotfix release

2000-12-08 Thread Andrew Kuchling
On Fri, Dec 08, 2000 at 03:48:52PM -0500, Brian Lloyd wrote: > The hotfix will work for all versions of Zope 2.2.0 and higher. A > future version of Zope will contain the fix for this > issue, and you will be able to uninstall the hot fix after upgrading. A slight modification to the patch mak

[Zope] Why Not Zope? 'Cos I like to bitch! ;-)

2000-12-01 Thread Andrew Kuchling
On 1 Dec 2000, Brian Lloyd wrote: >I think that this perception may be fostered by the fact >that the current bug-tracking system (Collector) doesnt >really let you see what has been done lately. Unless you >happen to see the emails going out on resolution, you >really aren't aware of the acti