[security update] www/zope : Upgrade to 2.7.5 and fix vulnerable
via Hotfix_20050405
HAYASHI Yasushi
yasi at yasi.to
Mon Apr 11 21:35:54 PDT 2005
>Submitter-Id: current-users
>Originator: HAYASHI Yasushi
>Organization: personal
>Confidential: no
>Synopsis: [security update] www/zope : Upgrade to 2.7.5 and fix vulnerable via Hotfix_20050405
>Severity: non-critical
>Priority: low
>Category: ports
>Class: update
>Release: FreeBSD 5.3-RELEASE-p8 i386
>Environment:
System: FreeBSD yasi.minidns.net 5.3-RELEASE-p8 FreeBSD 5.3-RELEASE-p8 #25: Wed Apr 6 22:56:09 JST 2005 yasi at yasi.minidns.net:/usr/obj/usr/src/sys/GENERIC i386
>Description:
www/zope, a web application platform, has been updated to 2.7.5.
And, this is more important, a security fix was announced at
April, 2005.
See: http://www.zope.org/Products/Zope/Hotfix-2005-04-05/Hotfix-20050405/README.txt
This PR contains above all.
>How-To-Repeat:
>Fix:
diff -urN /usr/ports/www/zope.old/Makefile /usr/ports/www/zope/Makefile
--- /usr/ports/www/zope.old/Makefile Sat Feb 26 23:51:31 2005
+++ /usr/ports/www/zope/Makefile Tue Apr 12 13:18:12 2005
@@ -6,11 +6,13 @@
#
PORTNAME= zope
-PORTVERSION= 2.7.4
+PORTVERSION= 2.7.5
CATEGORIES= www python zope
-MASTER_SITES= http://www.zope.org/Products/Zope/${PORTVERSION}/
-DISTNAME= Zope-${PORTVERSION}-0
-EXTRACT_SUFX= .tgz
+MASTER_SITES= http://www.zope.org/Products/Zope/${PORTVERSION}/ \
+ http://www.zope.org/Products/Zope/Hotfix-2005-04-05/Hotfix-20050405/
+DISTNAME= Zope-${PORTVERSION}-final
+DISTFILES= Zope-${PORTVERSION}-final.tgz \
+ Hotfix_20050405.tar.gz
MAINTAINER= estartu at augusta.de
COMMENT= An object-based web application platform
@@ -66,7 +68,11 @@
-e 's,^\(EXENAMES="\).*"$$,\1${PYTHON_VERSION}",g' \
${WRKSRC}/configure
+post-build:
+ -@${PYTHON_CMD} ${PYTHON_LIBDIR}/compileall.py ${WRKDIR}/Hotfix_20050405/
+
post-install:
+ @${CP} -Rp ${WRKDIR}/Hotfix_20050405 ${ZOPEBASEDIR}/lib/python/Products/
@${MV} ${ZOPEBASEDIR}/skel/etc/zope.conf.in ${ZOPEBASEDIR}/skel/etc/zope.conf.sample.in
@${SED} ${CONFIG_SUB:S/$/!g/:S/^/ -e s!%%/:S/=/%%!/} < ${FILESDIR}/pkg-message.in \
> ${PKGMESSAGE}
diff -urN /usr/ports/www/zope.old/distinfo /usr/ports/www/zope/distinfo
--- /usr/ports/www/zope.old/distinfo Sat Feb 26 23:51:31 2005
+++ /usr/ports/www/zope/distinfo Tue Apr 12 11:46:18 2005
@@ -1,2 +1,4 @@
-MD5 (zope/Zope-2.7.4-0.tgz) = 97c310f1de4609956c176588b08b25c5
-SIZE (zope/Zope-2.7.4-0.tgz) = 2932971
+MD5 (zope/Zope-2.7.5-final.tgz) = 5b5c5823c62370d9f7325c6014a49d8b
+SIZE (zope/Zope-2.7.5-final.tgz) = 2885871
+MD5 (zope/Hotfix_20050405.tar.gz) = c91c6fa42bfcfed24826d0cd4d69419b
+SIZE (zope/Hotfix_20050405.tar.gz) = 3604
diff -urN /usr/ports/www/zope.old/pkg-plist /usr/ports/www/zope/pkg-plist
--- /usr/ports/www/zope.old/pkg-plist Sat Feb 26 23:51:31 2005
+++ /usr/ports/www/zope/pkg-plist Tue Apr 12 12:35:44 2005
@@ -128,6 +128,8 @@
%%ZOPEBASEDIR%%/lib/python/AccessControl/tests/public_module/__init__.pyc
%%ZOPEBASEDIR%%/lib/python/AccessControl/tests/public_module/submodule/__init__.py
%%ZOPEBASEDIR%%/lib/python/AccessControl/tests/public_module/submodule/__init__.pyc
+%%ZOPEBASEDIR%%/lib/python/AccessControl/tests/testAcquisition.py
+%%ZOPEBASEDIR%%/lib/python/AccessControl/tests/testAcquisition.pyc
%%ZOPEBASEDIR%%/lib/python/AccessControl/tests/testBindings.py
%%ZOPEBASEDIR%%/lib/python/AccessControl/tests/testBindings.pyc
%%ZOPEBASEDIR%%/lib/python/AccessControl/tests/testClassSecurityInfo.py
@@ -708,6 +710,11 @@
%%ZOPEBASEDIR%%/lib/python/Products/ExternalMethod/tests/testExternalMethod.pyc
%%ZOPEBASEDIR%%/lib/python/Products/ExternalMethod/version.txt
%%ZOPEBASEDIR%%/lib/python/Products/ExternalMethod/www/function.gif
+%%ZOPEBASEDIR%%/lib/python/Products/Hotfix_20050405/LICENSE.txt
+%%ZOPEBASEDIR%%/lib/python/Products/Hotfix_20050405/README.txt
+%%ZOPEBASEDIR%%/lib/python/Products/Hotfix_20050405/__init__.py
+%%ZOPEBASEDIR%%/lib/python/Products/Hotfix_20050405/__init__.pyc
+%%ZOPEBASEDIR%%/lib/python/Products/Hotfix_20050405/version.txt
%%ZOPEBASEDIR%%/lib/python/Products/MIMETools/MIMETag.py
%%ZOPEBASEDIR%%/lib/python/Products/MIMETools/MIMETag.pyc
%%ZOPEBASEDIR%%/lib/python/Products/MIMETools/README.txt
@@ -2397,6 +2404,8 @@
%%ZOPEBASEDIR%%/lib/python/ZPublisher/tests/testHTTPRequest.pyc
%%ZOPEBASEDIR%%/lib/python/ZPublisher/tests/testHTTPResponse.py
%%ZOPEBASEDIR%%/lib/python/ZPublisher/tests/testHTTPResponse.pyc
+%%ZOPEBASEDIR%%/lib/python/ZPublisher/tests/testIterators.py
+%%ZOPEBASEDIR%%/lib/python/ZPublisher/tests/testIterators.pyc
%%ZOPEBASEDIR%%/lib/python/ZPublisher/tests/testPublish.py
%%ZOPEBASEDIR%%/lib/python/ZPublisher/tests/testPublish.pyc
%%ZOPEBASEDIR%%/lib/python/ZPublisher/tests/testTaintedString.py
@@ -3077,6 +3086,7 @@
@dirrm %%ZOPEBASEDIR%%/lib/python/Products/MailHost/dtml
@dirrm %%ZOPEBASEDIR%%/lib/python/Products/MailHost
@dirrm %%ZOPEBASEDIR%%/lib/python/Products/MIMETools
+ at dirrm %%ZOPEBASEDIR%%/lib/python/Products/Hotfix_20050405
@dirrm %%ZOPEBASEDIR%%/lib/python/Products/ExternalMethod/www
@dirrm %%ZOPEBASEDIR%%/lib/python/Products/ExternalMethod/tests/Extensions
@dirrm %%ZOPEBASEDIR%%/lib/python/Products/ExternalMethod/tests
More information about the freebsd-python
mailing list