Re: [Zope] Hotfix for security vulnerability

2011-10-25 Thread Encolpe Degoute
Hello, Both of these url are not available: - http://download.zope.org/Zope2/index/2.12.21/versions.cfg - http://download.zope.org/Zope2/index/2.13.11/versions.cfg Regards, Encolpe DEGOUTE Le 24/10/2011 23:54, Tres Seaver a écrit : On behalf of the Zope security response team, I would like to

Re: [Zope] Hotfix for security vulnerability

2011-10-25 Thread Niels Dettenbach
Am Dienstag, 25. Oktober 2011, 12:52:33 schrieb Encolpe Degoute: Hello, Both of these url are not available: - http://download.zope.org/Zope2/index/2.12.21/versions.cfg - http://download.zope.org/Zope2/index/2.13.11/versions.cfg As i understand the hotfix posting right, the new full ZOPE

Re: [Zope] Hotfix for security vulnerability

2011-10-25 Thread Laurence Rowe
On 24 October 2011 22:54, Tres Seaver tsea...@palladion.com wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On behalf of the Zope security response team, I would like to announce the availability of a hotfix for a vulnerability inadvertently published earlier today.

Re: [Zope] Hotfix for security vulnerability

2011-10-25 Thread Niels Dettenbach
Am Dienstag, 25. Oktober 2011, 12:28:39 schrieb Laurence Rowe: Can you confirm whether or not Zope 2.13.6 through 2.13.10 are affected? For me 2.13.10 seems to be affected (which makes sense as there would not be a 2.13.11 announced in the advisory). Is this possibly a typo? cheers, Niels.

Re: [Zope] Hotfix for security vulnerability

2011-10-25 Thread Tres Seaver
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 10/25/2011 06:52 AM, Encolpe Degoute wrote: Hello, Both of these url are not available: - http://download.zope.org/Zope2/index/2.12.21/versions.cfg - http://download.zope.org/Zope2/index/2.13.11/versions.cfg The hotfix announcement says,