From 531ce56fe28f39263c203cbbf6daacb925e2e435 Mon Sep 17 00:00:00 2001 From: Jon Ciesla Date: Dec 18 2008 13:03:50 +0000 Subject: BZ 476709. --- diff --git a/moodle-1.9.3-rce-texed.patch b/moodle-1.9.3-rce-texed.patch new file mode 100644 index 0000000..9e6e1fa --- /dev/null +++ b/moodle-1.9.3-rce-texed.patch @@ -0,0 +1,6 @@ +--- filter/tex/texed.php.orig 2008-12-17 12:40:18.000000000 -0600 ++++ filter/tex/texed.php 2008-12-17 12:40:19.000000000 -0600 +@@ -33,0 +34 @@ ++ $pathname = "$CFG->dataroot/filter/tex/$image"; +@@ -37,0 +39 @@ ++ require_once($CFG->libdir . '/filelib.php'); diff --git a/moodle.spec b/moodle.spec index 39a6db7..956b208 100644 --- a/moodle.spec +++ b/moodle.spec @@ -7,7 +7,7 @@ Name: moodle Version: 1.9.3 -Release: 3%{?dist} +Release: 4%{?dist} Summary: A Course Management System Group: Applications/Publishing @@ -101,6 +101,7 @@ Source82: http://download.moodle.org/lang16/cy_utf8.zip Source83: http://download.moodle.org/lang16/uz_utf8.zip BuildRoot: %{_tmppath}/%{name}-%{version}-%{release}-root-%(%{__id_u} -n) BuildArch: noarch +Patch0: moodle-1.9.3-rce-texed.patch BuildRequires: unzip Requires: php-gd vixie-cron mimetex perl(lib) php-mysql php-xmlrpc @@ -1458,6 +1459,8 @@ sed -i 's/\r//' lib/pclzip/readme.txt sed -i 's/\r//' mod/wiki/ewiki/README sed -i 's/\r//' mod/wiki/ewiki/README.de +%patch0 -p0 + %build rm config-dist.php install.php tags filter/tex/mimetex.* filter/tex/README.mimetex @@ -1647,6 +1650,9 @@ rm -rf /var/www/moodle/web/lib/magpie %{_sbindir}/%{name}-cron %changelog +* Wed Dec 17 2008 Jon Ciesla - 1.9.3-4 +- Texed fix, BZ 476709. + * Fri Nov 07 2008 Jon Ciesla - 1.9.3-3 - Moved to weekly downloaded 11/7/08 to fix Snoopy CVE-2008-4796.