Re: [Zope-dev] [Zope] Hotfix for security vulnerability

2011-10-25 Thread Laurence Rowe
On 24 October 2011 22:54, Tres Seaver tsea...@palladion.com wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On behalf of the Zope security response team, I would like to announce the availability of a hotfix for a vulnerability inadvertently published earlier today.

Re: [Zope-dev] [Zope] Hotfix for security vulnerability

2011-10-25 Thread yuppie
Laurence Rowe wrote: This hotfix addresses a serious vulnerability in the Zope2 application server. Affected versions of Zope2 include: - - 2.12.x= 2.12.20 - - 2.13.x= 2.13.6 Older releases (2.11.x, 2.10.x, etc.) are not vulnerable. Can you confirm whether or not Zope 2.13.6 through

Re: [Zope-dev] [Zope] Hotfix for security vulnerability

2011-10-25 Thread Tres Seaver
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 10/25/2011 07:44 AM, yuppie wrote: Laurence Rowe wrote: This hotfix addresses a serious vulnerability in the Zope2 application server. Affected versions of Zope2 include: - - 2.12.x= 2.12.20 - - 2.13.x= 2.13.6 Older releases (2.11.x,

Re: [Zope-dev] [Zope] Hotfix for security vulnerability

2011-10-25 Thread Tres Seaver
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 10/25/2011 07:28 AM, Laurence Rowe wrote: On 24 October 2011 22:54, Tres Seaver tsea...@palladion.com wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On behalf of the Zope security response team, I would like to announce the