-
Wed Apr 22 2020 Ondrej Pohorelsky <opohorel@redhat.com> - 2.18.4-1
- Update to release 2.18.4
- Resolves: CVE-2020-11008
-
Thu Apr 09 2020 Ondrej Pohorelsky <opohorel@redhat.com> - 2.18.2-3
- Crafted URL containing new lines can cause credential leak
- Resolves: CVE-2020-5260
-
Tue Dec 17 2019 Ondrej Pohorelsky <opohorel@redhat.com> - 2.18.2-1
- Update to release 2.18.2
- Remote code execution in recursive clones with nested submodules
Resolves: CVE-2019-1387
- Arbitrary path overwriting via export-marks in-stream command
Resolves: CVE-2019-1348
- Recursive submodule cloning allows using git directory twice with synonymous
directory name written in .git/
Resolves: CVE-2019-1349
- Fixes CVE-2019-1350, CVE-2019-1351, CVE-2019-1352, CVE-2019-1353, CVE-2019-1354
-
Thu Nov 29 2018 Pavel Cahyna <pcahyna@redhat.com> - 2.18.1-3
- apply upstream run-command PATH fix (CVE-2018-19486)
-
Wed Oct 24 2018 Pavel Cahyna <pcahyna@redhat.com> - 2.18.1-2
- config: document value 2 for protocol.version (upstream patch)
- Fix builds without docs and without cvs and/or p4 (from skisela)
- Fix smart-http test due to changes in cookie sort order in curl-7.61.1
(see #1625677)
-
Wed Oct 10 2018 Pavel Cahyna <pcahyna@redhat.com> - 2.18.1-1
- Update to release 2.18.1, fixes CVE-2018-17456: arbitrary code execution via .gitmodules
-
Thu Jul 19 2018 Sebastian Kisela <skisela@redhat.com> - 2.18.0-5
- Add %{?scl_prefix} macros for services + desktop files.
- Add tests, checking hardcoded content of dist git sources,
written by pstodulk.
- Make git-gui.desktop, git@.service and gitweb-httpd.conf content
point to the correct scl paths.
- Move instaweb to separate subpackage
- Switch instaweb default HTTP daemon to httpd
- Use the correct apache module directory in instaweb.
- Build docs with TZ=UTC to make results deterministic.
Inspired by https://wiki.debian.org/ReproducibleBuilds/TimestampsInDocumentationGeneratedByAsciidoc
-
Tue Jul 17 2018 Sebastian Kisela <skisela@redhat.com> - 2.18.0-4
- Fix %{perllibdir} path
- %{perllibdir} now points to where perl-git modules are installed.
This was introduced in fedora commit:
f3c13faa206935a844e09c7dc9d78d6325100ced.
-
Tue Jul 17 2018 Sebastian Kisela <skisela@redhat.com> - 2.18.0-3
- Initial rhscl-3.2-rh-git218 commit
- Add %{scl*} macros to the spec file.
-
Wed Jul 11 2018 Pavel Cahyna <pcahyna@redhat.com> - 2.18.0-3
- Disable link checking on RHEL again (partially reverts 2.17.0-3)