1
0
mirror of https://git.FreeBSD.org/ports.git synced 2024-11-25 00:51:21 +00:00
freebsd-ports/www/zope
Neil Blakey-Milner 5aaf8bc98b Apply a Zope hotfix, fixing a potential security problem.
From the Zope hotfix:

	This hotfix addresses and important security issue that affects Zope
	versions up to and including Zope 2.3.1 b1.

	The issue is related to ZClasses in that a user with through-the-web
	scripting capabilities on a Zope site can view and assign class
	attributes to ZClasses, possibly allowing them to make inappropriate
	changes to ZClass instances.

	This patch also fixes problems in the ObjectManager, PropertyManager,
	and PropertySheet classes related to mutability of method return values
	which could be perceived as a security problem.

	We *highly* recommend that any Zope site running versions of Zope up to
	and including 2.3.1 b1 have this hotfix product installed to mitigate
	these issues if the site is accessible by untrusted users who have
	through-the-web scripting privileges.
2001-03-04 10:32:18 +00:00
..
files Make Zope management work with non-SSL connections, but give an example 2000-09-19 09:49:04 +00:00
distinfo Apply a Zope hotfix, fixing a potential security problem. 2001-03-04 10:32:18 +00:00
Makefile Apply a Zope hotfix, fixing a potential security problem. 2001-03-04 10:32:18 +00:00
pkg-comment
pkg-descr
pkg-plist Apply a Zope hotfix, fixing a potential security problem. 2001-03-04 10:32:18 +00:00