-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I have pushed out releases of PAS in order to address a potential
security vulnerability reported by Alan Hoey:

 https://bugs.launchpad.net/zope-pas/+bug/789858

The releases are available on PyPI:

 http://pypi.python.org/pypi/Products.PluggableAuthService/1.5.5

 http://pypi.python.org/pypi/Products.PluggableAuthService/1.6.5

 http://pypi.python.org/pypi/Products.PluggableAuthService/1.7.5

If you cannot install one of these versions for some reason, the patch
on the Launchpad should be applicable (with some fuzz) to any PAS
version since 1.4.


Tres.
- -- 
===================================================================
Tres Seaver          +1 540-429-0999          tsea...@palladion.com
Palladion Software   "Excellence by Design"    http://palladion.com
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iEYEARECAAYFAk3j1xIACgkQ+gerLs4ltQ6EGgCdHsbU8dVX4HKjsadKl31U0c1u
NwAAn1LgmNe6jgfl1C7fLihlDezzzcUP
=Zq2Y
-----END PGP SIGNATURE-----

_______________________________________________
Zope-PAS mailing list
Zope-PAS@zope.org
https://mail.zope.org/mailman/listinfo/zope-pas

Reply via email to