VOOZH about

URL: https://phabricator.wikimedia.org/T181665

⇱ ⚓ T181665 Tracking bug for 1.27.5/1.29.3/1.30.1/1.31.1 security release


Maniphest T181665

Tracking bug for 1.27.5/1.29.3/1.30.1/1.31.1 security release
Closed, ResolvedPublic

Assigned To
Authored By
Bawolff
Nov 29 2017, 6:58 PM
Referenced Files
F25627840: REL1_30.tar
Sep 3 2018, 8:35 AM
F25627841: REL1_29.tar
Sep 3 2018, 8:35 AM
F25627839: master.tar
Sep 3 2018, 8:35 AM
F25627843: REL1_27.tar
Sep 3 2018, 8:35 AM
F25627842: REL1_31.tar
Sep 3 2018, 8:35 AM
F23421797: 01-T169545-REL1_30.patch
Jul 7 2018, 5:56 PM
F23421770: 01-T169545-REL1_27.patch
Jul 7 2018, 5:56 PM
F23421769: 01-T169545-REL1_29.patch
Jul 7 2018, 5:56 PM

Description

Previous work T168823: Tracking bug for 1.27.4/1.28.3/1.29.2 security releases

Tracking bug for next security release

This will be the final 1.29 release.

Maniphest IDCVE IDREL1_27REL1_29REL1_30REL1_31master
T169545CVE-2018-0503
01-T169545-REL1_27.patch1 KBDownload
01-T169545-REL1_29.patch1 KBDownload
01-T169545-REL1_30.patch1 KBDownload
01-T169545-REL1_31.patch1 KBDownload
01-T169545-master.patch1 KBDownload
T187638CVE-2018-0504mergedmergedmergedmergedmerged
T194605CVE-2018-0505
T194237n/a (hardening)mergedmergedmergedmergedmerged
T199029CVE-2018-13258n/an/an/a

Related Objects

Event Timeline

Aklapper renamed this task from Tracking bug for 1.27.5/1.29.2/1.30.1 security release to Tracking bug for 1.27.5/1.29.3/1.30.1 security release.Mar 28 2018, 7:34 AM
Comment Actions

As I said in email: Let's shoot for this to happen before REL1_31 is branched (April 17th) to make things clean for everyone.

Comment Actions

@Bawolff @Reedy is this going to happen soon? 1.31 is really close to being ready.

Reedy renamed this task from Tracking bug for 1.27.5/1.29.3/1.30.1 security release to Tracking bug for 1.27.5/1.29.3/1.30.1/1.31.1 security release.Jul 7 2018, 10:41 AM
Reedy updated the task description. (Show Details)
Reedy updated the task description. (Show Details)
Reedy updated the task description. (Show Details)
Legoktm removed a subtask: Restricted Task.Aug 29 2018, 1:14 AM
Legoktm updated the task description. (Show Details)
Comment Actions

I didn't want to upload 20 individual files to Phabricator...here's tars of the 3 backported security patches for each branch, and then release branches have one more patch bumping $wgVersion and adding release notes.

master.tar10 KBDownload
REL1_30.tar20 KBDownload
REL1_29.tar20 KBDownload
REL1_31.tar20 KBDownload
REL1_27.tar20 KBDownload
Reedy claimed this task.
Reedy changed the visibility from "Custom Policy" to "Public (No Login Required)".
Content licensed under Creative Commons Attribution-ShareAlike (CC BY-SA) 4.0 unless otherwise noted; code licensed under GNU General Public License (GPL) 2.0 or later and other open source licenses. By using this site, you agree to the Terms of Use, Privacy Policy, and Code of Conduct. · Wikimedia Foundation · Privacy Policy · Code of Conduct · Terms of Use · Disclaimer · CC-BY-SA · GPL · Credits