[dev] [horde-vendor] [SECURITY] Kronolith H5 (4.2.4) (final)

Mathieu Parent math.parent at gmail.com
Sun Dec 7 11:36:38 UTC 2014


2014-12-03 17:24 GMT+01:00 Jan Schneider <jan at horde.org>:
> The Horde Team is pleased to announce the final release of the Kronolith
> Calendar Application version H5 (4.2.4).
[...]
> The major changes compared to Kronolith version H5 (4.2.3) are:
>     * Fixed disclosure of private events in daily agenda.

It seems that this change triggered the [SECURITY] tag in the subject.

Couldn't all those security fixes (at least on the stable branches)
have a CVE id assigned?

It seems easy to do [1], and will help downstream projects (i.e
distros) to follow.

[1]: http://cve.mitre.org/cve/request_id.html

Regards

-- 
Mathieu Parent


More information about the dev mailing list