[announce] Horde 3.2.3 (final)

Chuck Hagenbuch chuck at horde.org
Wed Dec 10 16:21:34 UTC 2008


The Horde Team is pleased to announce the final release of the Horde
Application Framework version 3.2.3.

This is a minor security release that adds another check to the XSS filter for
an Internet Explorer exploit. All users are encouraged to upgrade to this
version.

The Horde Application Framework is a modular, general-purpose web application
framework written in PHP.  It provides an extensive array of classes that are
targeted at the common problems and tasks involved in developing modern web
applications.

The major changes compared to the Horde version H3 (3.2.2) are:
     * Added another check to the XSS filter (only IE is vulnerable).

The full list of changes (from version 3.2.2) can be viewed here:

http://cvs.horde.org/diff.php/horde/docs/CHANGES?r1=1.515.2.413.2.1&r2=1.515.2.413.2.3&ty=h

The Horde 3.2.3 distribution is available from the following locations:

     ftp://ftp.horde.org/pub/horde/horde-3.2.3.tar.gz
     http://ftp.horde.org/pub/horde/horde-3.2.3.tar.gz

Patches against version 3.2.2 are available at:

     ftp://ftp.horde.org/pub/horde/patches/patch-horde-3.2.2-3.2.3.gz
     http://ftp.horde.org/pub/horde/patches/patch-horde-3.2.2-3.2.3.gz

NOTE: Patches do not contain differences between files containing binary data.
These files will need to be updated via the distribution files.

Or, for quicker access, download from your nearest mirror:

     http://www.horde.org/mirrors.php

MD5 sums for the packages are as follows:

     99eb2d6380c7f8964e876ffa7ec43890  horde-3.2.3.tar.gz
     da68821c65982745fb4151a8615fd232  patch-horde-3.2.2-3.2.3.gz

Have fun!

The Horde Team.


More information about the announce mailing list