Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 913653 - mail-client/roundcube-1.6.3: Stabilization request
Summary: mail-client/roundcube-1.6.3: Stabilization request
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: Stabilization (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Aaron W. Swenson
URL:
Whiteboard:
Keywords: ALLARCHES, CC-ARCHES
Depends on:
Blocks:
 
Reported: 2023-09-04 18:07 UTC by Philippe Chaintreuil
Modified: 2023-09-26 15:31 UTC (History)
2 users (show)

See Also:
Package list:
mail-client/roundcube-1.6.3
Runtime testing required: No
nattka: sanity-check+


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Philippe Chaintreuil 2023-09-04 18:07:09 UTC
Please stabilize.  Been in the tree for over a month, and working fine for me that whole time.

Reproducible: Always
Comment 1 Tomáš Mózes 2023-09-16 09:38:08 UTC
Security update 1.6.3 released

Published: 15 September 2023

Tags: releases updates security 

We just published a security update to the version 1.6 of Roundcube Webmail. It provides a fix to a recently reported XSS vulnerability:

    Fix cross-site scripting (XSS) vulnerability in handling of linkrefs in plain text messages, reported by Niraj Shivtarkar.
Comment 2 Tomáš Mózes 2023-09-16 09:38:40 UTC
Philippe, I've just upgraded to 1.6.3, seems to work fine, we should stabilize this instead.
Comment 3 acmondor 2023-09-23 15:59:20 UTC
I upgraded to 1.6.3 a few days ago from 1.5.x and it's working find for me, although I did have to manually install the Larry skin for my users as that and the Classic skin are no longer included in 1.6.x.

Would it make sense for the 1.6.x ebuilds to optionally provide these legacy skins, perhaps via a use flag?
Comment 4 Arthur Zamarin archtester Gentoo Infrastructure gentoo-dev Security 2023-09-26 15:31:28 UTC
amd64 arm ppc ppc64 sparc x86 (ALLARCHES) done

all arches done