Skip to content
Snippets Groups Projects
  1. Oct 19, 2006
  2. Oct 18, 2006
    • Andreas Gohr's avatar
      unlock files if write failed · fb7125ee
      Andreas Gohr authored
      darcs-hash:20061018181931-7ad00-2778b83d25e8dcfad4b00710077e44bcef9af699.gz
      fb7125ee
    • Andreas Gohr's avatar
      fix getRecents for multiple edits per second · 2356b509
      Andreas Gohr authored
      This fixes the getRecent function when multiple edits occured during the same
      second.
      
      darcs-hash:20061018181837-7ad00-a09b9b63a4bab86d142bfe1f8cf662b001bda075.gz
      2356b509
    • Andreas Gohr's avatar
      better check for images in fetch.php · d1ed0b61
      Andreas Gohr authored
      This patch is an enhancement to yesterday's changes. The ability to download
      external content could be used for XSS attacks, when faking the sent MIME
      type. This patch adds a check on the received data for valid images.
      
      darcs-hash:20061018124942-7ad00-4e8bca7d3877e6a10c348b5d45499cf8adf8b087.gz
      d1ed0b61
  3. Oct 17, 2006
    • Andreas Gohr's avatar
      restrict fetch.php's download abilities · 894a80cc
      Andreas Gohr authored
      This patch changes fetch.php ability to download external files. It now checks
      for the returned MIME type and will only download images. For all other
      MIME types a redirect is sent back to the browser. This reduces the risc of
      being misused as open proxy.
      
      Additionally the download facility is disabled completly by default by setting
      the fetchsize option to 0. Users who want the feature need to overwrite the option
      in their local.php.
      
      Background: The ability to download external files is needed to resize external
      images on the server side. When disabled, a redirect is sent to the browser which
      will download the fullsize image and rescale it on the client side which is more
      bandwidth and CPU intensive.
      
      darcs-hash:20061017175329-7ad00-cd1b1bfa043a04540c51ca8380d28deaa14147d1.gz
      894a80cc
    • Andreas Gohr's avatar
      read old revisons from the attic additionally to the changelog infos · 5b8fbc22
      Andreas Gohr authored
      darcs-hash:20061017091036-7ad00-41df4dbaddb0a20d0f000f7a1bb000aaf2176185.gz
      5b8fbc22
  4. Oct 09, 2006
    • Denis Simakov's avatar
      russian update · 98e707c7
      Denis Simakov authored
      darcs-hash:20061009103112-3c565-b3883aadc0875d06ddadcd54a0dab2075e415eef.gz
      98e707c7
  5. Oct 11, 2006
  6. Oct 15, 2006
  7. Oct 13, 2006
  8. Aug 29, 2006
    • polinnia's avatar
      IT-20060829-patch · 6cd2b1e4
      polinnia authored
      - translated new strings in registermail.txt, config e usermanager plugins
      - fixed changed parameter in config plugin
      
      darcs-hash:20060829170241-57bea-24bf2cbfb341f25b1461cc7cd4fc442e0f44d511.gz
      6cd2b1e4
  9. Oct 10, 2006
  10. Oct 09, 2006
    • Andreas Gohr's avatar
      lower chunksize in wordblock #938 · a51d08ef
      Andreas Gohr authored
      There were recent reports of exceeded patternsize in the wordblock function
      when used with PHP5
      
      darcs-hash:20061009165557-7ad00-f35d44da296caf6fd85431520d600033402d9b2f.gz
      a51d08ef
  11. Oct 08, 2006
  12. Oct 04, 2006
    • chris's avatar
      update p_get/set_metadata to use $INFO['meta'] · 6afe8dca
      chris authored
      This patch updates p_get_metadata() to utilise the in memory copy
      copy of the current page's metadata ($INFO['meta']) when appropriate.
      
      The patch also updates p_set_metadata() to synchronise any changes
      to the current page's metadata with $INFO['meta'].
      
      $INFO hash is updated with two new elements:
        'id'
      
      darcs-hash:20061004210030-9b6ab-7eab6f933a775fe350a1fb14d1118ea77d2db919.gz
      6afe8dca
  13. Oct 06, 2006
  14. Oct 05, 2006
    • chris's avatar
      update config settings for dmode & fmode · 2f97bef5
      chris authored
      - change validation pattern to allow 3 or 4 octal digits and hence
        setting of SUID, SGID and sticky bit on systems which support them
      
      darcs-hash:20061005223141-9b6ab-80511ecc4780d6258f15f59087f9bab20d1f1340.gz
      2f97bef5
  15. Oct 04, 2006
  16. Oct 03, 2006
    • Andreas Gohr's avatar
      always bind as superuser for getting userinfo (LDAP) #751 · 01ca51fc
      Andreas Gohr authored
      Rebind as superuser even on a previous successful bind as normal user, when
      superuser credentials are available. LDAP access restrictions may need it.
      
      darcs-hash:20061003153018-7ad00-16a69e99f93433bd9e999086f8757a56f975a1ef.gz
      01ca51fc
    • Andreas Gohr's avatar
      use DOKU_URL as key for sessions and auth cookie #896 #581 #884 · e71ce681
      Andreas Gohr authored
      This patch changes the DOKU_COOKIE define to be based on the DOKU_URL define.
      DOKU_COOKIE is now used as session key as well, making sessions no longer
      dependend on the title option. This should fix problems with multiple
      wikis on the same host (using the same title) and wikis accessed through
      different URLs.
      
      darcs-hash:20061003121546-7ad00-aea4c256b7752815ed422ce74a659152a601d267.gz
      e71ce681
    • Andreas Gohr's avatar
      force rebind after opening new LDAP connection #751 · 2d18445d
      Andreas Gohr authored
      This patch sets the private bound variable back to false if a new connection
      is opened.
      
      darcs-hash:20061003104320-7ad00-24370bcdc7beff5db7d7f2e68ea180763699ca5c.gz
      2d18445d
  17. Oct 02, 2006
  18. Sep 30, 2006
    • chris's avatar
      install.php updates · 70a6aa16
      chris authored
      - add retry button (as suggested by Diego Georgini)
      - correct error color, from green to red (spotted by Diego Georgini)
      - add utf8_decode and utf8_encode to required function list, when
        mb_string functions are not available.
      - remove extra backslash from reported file names.
      
      darcs-hash:20060930170121-9b6ab-d7b4a455b01d28f35b8c69385639439eaca8944e.gz
      70a6aa16
    • Ben Coburn's avatar
      fix rel · f4f47358
      Ben Coburn authored
      darcs-hash:20060930143719-05dcb-251992d688e64ed221dbfe3d9c198fae603e2531.gz
      f4f47358
  19. Sep 28, 2006
  20. Sep 27, 2006
    • chris's avatar
      unit_test fixes/changes · d07dd8ee
      chris authored
      - auth_nameencode.test, add teardown code to clear new
        $cache_authname memory cache
      - utf8_substr.test, correct expected result for last test
      
      darcs-hash:20060927101118-9b6ab-a72ea443ba67e17946af34d67c274975d563a22f.gz
      d07dd8ee
    • Guy Brand gb@isis.u-strasbg.fr's avatar
      Fix link in french translation · bda5ac44
      Guy Brand gb@isis.u-strasbg.fr authored
      darcs-hash:20060927091545-c47a2-f706a9e54e7450084ffb929b44c9a1b1707c4eef.gz
      bda5ac44
  21. Sep 26, 2006
    • chris's avatar
      utf8_substr fix for FS#891 · 5e613a5c
      chris authored
      darcs-hash:20060927033713-9b6ab-4b35e0a85b6d11d5a3a98858cd2f860b383ff153.gz
      5e613a5c
    • Andreas Gohr's avatar
      security fixes for fetch.php #924 #962 · 8fcc3410
      Andreas Gohr authored
      Fixes a shell injection and a DOS vulnerability
      
      darcs-hash:20060926200551-7ad00-5ef27940dda6e48e7e2f8743fc90fa80b7b5cdff.gz
      8fcc3410
    • Andreas Gohr's avatar
      wordblock enhancement · 041d1964
      Andreas Gohr authored
      The default wordblock.conf provided by the guys at chonqed.org matches agaist
      URLS beginning with http. But DokuWiki also links simple www.example.com links.
      Spammers used this method to place blacklisted URLs in the Wiki.
      
      This patch constructs full URLs from these shortcut-URLs before applying the
      blacklist regexp.
      
      The patch also fixes a problem with the toolbar not appearing when the blacklist
      hit and denied saving.
      
      darcs-hash:20060926192420-7ad00-519df90a5953b690428bfa0928de37b3053031b0.gz
      041d1964
  22. Sep 25, 2006
    • chris's avatar
      amendments to previous patch updating rss & cache · 0a69dff7
      chris authored
      rss syntax extended to include a refresh parameter
       <digits><period>  period can be d,h,m for days, hours, minutes respectively
                         if not specified will default to 4 hours
                         dokuwiki imposes a minimum of 10 minutes
      
      metadata now used "date valid age" (seconds) rather than "date valid end"
      
      darcs-hash:20060925201222-9b6ab-c8e6d8e40bb178295bab874fce5147ccff35fbbb.gz
      0a69dff7
  23. Sep 24, 2006
    • chris's avatar
      cache, metadata & purgefile updates · ce6b63d9
      chris authored
      Cache
      - add dependency for metadata renderer file
      - check metadata for end of page life, "date valid end".
      
      Metadata Renderer
      - RSS syntax mode now sets rendered page expiry, "date valid end"
        and includes the feed URL in "relation haspart".
      
      Purgefile
      For all wiki installations the purgefile records the earliest
      time before which no cache purge (based on data consistency)
      is required. Cache files older than this time MAY need to be
      purged.
      - remove purgeonadd configuration setting
      
      darcs-hash:20060924202157-9b6ab-4531e91411c41914eeab2b6a8160c3d46b001cee.gz
      ce6b63d9
Loading