Commit Graph

19436 Commits

Author SHA1 Message Date
Peter Müller
ce455a00a6 Merge branch 'next' into temp-c171-development 2022-09-11 08:20:29 +00:00
Peter Müller
a981a365a0 Core Update 170: Ship files related to #12925
Signed-off-by: Peter Müller <peter.mueller@ipfire.org>
2022-09-11 08:13:27 +00:00
Michael Tremer
ba4f53c565 proxy.cgi: Correctly validate domain lists
Fixes: #12925 - JVN#15411362 Inquiry on vulnerability found in IPFire
Reported-by: Noriko Totsuka <vuls@jpcert.or.jp>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
2022-09-11 08:12:00 +00:00
Michael Tremer
7cb63527d9 mail.cgi: Validate email recipient
The email recipient was not correctly validated which allowed for some
stored cross-site scripting vulnerability.

Fixes: #12925 - JVN#15411362 Inquiry on vulnerability found in IPFire
Reported-by: Noriko Totsuka <vuls@jpcert.or.jp>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
2022-09-11 08:11:56 +00:00
Michael Tremer
cc826e8628 setaliases: Use "secondary" flag instead of scope
The scope option does not seem to work at all now, which is surprising
since I tested it quite well.

The secondary flag cannot be set from userspace (aparently), but it
works, so I would prefer to go with this option for now.

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
2022-09-11 07:40:46 +00:00
Peter Müller
763efaf672 configroot: Create "settings" and "modify" files for ipblocklist
The third version of this patch conducts the necessary changes in
configroot. Previously, they took place in ipblocklist itself, which
would have caused user settings to be overwritten, should ipblocklist be
shipped in future Core Updates.

Fixes: #12917
Cc: Stefan Schantl <stefan.schantl@ipfire.org>
Signed-off-by: Peter Müller <peter.mueller@ipfire.org>
Acked-by: Stefan Schantl <stefan.schantl@ipfire.org>
2022-09-02 06:37:56 +00:00
Adolf Belka
2fbd66d90e perl-Apache-Htpasswd: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
41b11b1654 perl-Archive-Tar: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
9c4ca202eb perl-Archive-Zip: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
7d9fb46e33 perl-BerkeleyDB: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
a56c5c1bd9 perl-CGI: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
21d7365c92 perl-Canary-Stability: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
c32e4c3153 perl-Compress-Zlib: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
db5479f558 perl-Convert-TNEF: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
5e361fdebc perl-Convert-UUlib: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
e99c56a20b perl-Crypt-PasswdMD5: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
c8aec11f8b perl-DBD-SQLite: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
93c80c7b1e perl-DBI: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
b3bceb1f6b perl-Data-UUID: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
9a88568665 perl-Device-Modem: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
c7f4d9d198 perl-Device-SerialPort: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
3c151aed98 perl-Digest-SHA1: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
83c83b347b perl-Digest-HMAC: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
748b960a45 perl-Digest: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
0bc7887574 perl-Email-Date-Format: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
210d41959a perl-ExtUtils-PkgConfig: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
976532247f perl-File-Remove: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
4862cf1246 perl-Font-TTF: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
ad6893021d perl-GD-Graph: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
58c7c28813 perl-GD-TextUtil: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
fcd9e588d3 perl-GD: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
3d449ad141 perl-HTML-Parser: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
af585a72cb perl-HTML-Tagset: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
ce01f64c81 perl-HTML-Template: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
e21ae3a785 perl-HTTP-Date: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
09e37c64d0 perl-HTTP-Message: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
1c3fdbb10f perl-IO-Socket-SSL: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
808aa37532 perl-IO-Stringy: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
f70dba09a1 perl-IO-String: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
ca426ccf04 perl-Imager-QRCode: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
0889e4c137 perl-Imager: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
d4db32be4d perl-LWP-Protocol-https: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
05c79f4793 perl-MIME-Base32: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
aed984f25e perl-MIME-Lite: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
9a898c94bd perl-MIME-Tools: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
7aaa698071 perl-Mail-Tools: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
4fd0eea5f3 perl-Module-Build: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
0d3e6dd392 perl-Module-Install: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
c300a993d0 perl-Module-ScanDeps: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00
Adolf Belka
59aac1c61d perl-Net-CIDR-Lite: Update to perl 5.36.0
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
2022-09-01 21:16:51 +00:00