[interchange-cvs] interchange - jon modified WHATSNEW-5.4

interchange-cvs at icdevgroup.org interchange-cvs at icdevgroup.org
Sat Jun 24 12:22:08 EDT 2006


User:      jon
Date:      2006-06-24 16:22:08 GMT
Modified:  .        Tag: STABLE_5_4-branch WHATSNEW-5.4
Log:
Note all changes since last release.

Revision  Changes    Path
No                   revision



No                   revision



1.1.2.4   +31 -0     interchange/Attic/WHATSNEW-5.4


rev 1.1.2.4, prev_rev 1.1.2.3
Index: WHATSNEW-5.4
===================================================================
RCS file: /var/cvs/interchange/Attic/WHATSNEW-5.4,v
retrieving revision 1.1.2.3
retrieving revision 1.1.2.4
diff -u -u -r1.1.2.3 -r1.1.2.4
--- WHATSNEW-5.4	26 May 2006 23:06:54 -0000	1.1.2.3
+++ WHATSNEW-5.4	24 Jun 2006 16:22:08 -0000	1.1.2.4
@@ -6,6 +6,37 @@
 ------------------------------------------------------------------------------
 
 
+Interchange 5.4.2 released on YYYY-MM-DD.
+
+
+Core
+----
+
+* Fixed a DoS exploit. A carefully crafted HTTP POST request could cause
+  an Interchange page processor to hang until it's killed by Interchange's
+  periodic housekeeping routine. If several of these requests are received
+  in quick succession then it could be possible to disable all of the page
+  processors, rendering Interchange unresponsive for a while. Fixed by
+  Kevin Walsh; pointed out by Donald Alexander.
+
+Standard demo
+-------------
+
+* Updated Discover Card logo. Provided by Steve Graham.
+
+* Various special_pages/missing.html fixes:
+  - Fixed broken admin 404 error page (which came from Standard).
+  - Removed duplicate, sometimes-bogus MV_PREV_PAGE display.
+  - Eliminated double-interpolation of page comparison.
+
+* Increased compatibility with XHTML.
+
+* Cleaned up splash page and fixed broken links.
+
+
+------------------------------------------------------------------------------
+
+
 Interchange 5.4.1 released on 2006-05-27.
 
 








More information about the interchange-cvs mailing list