Bug 533795

Summary: mediawiki should be updated (security)
Product: [Fedora] Fedora EPEL Reporter: Milan Kerslager <milan.kerslager>
Component: mediawikiAssignee: Stephen John Smoogen <smooge>
Status: CLOSED WONTFIX QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: high Docs Contact:
Priority: low    
Version: el5CC: jayvdb, smooge
Target Milestone: ---   
Target Release: ---   
Hardware: All   
OS: Linux   
URL: http://lists.wikimedia.org/pipermail/mediawiki-announce/2009-July/000087.html
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2015-01-15 16:43:07 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 633085    
Bug Blocks:    
Attachments:
Description Flags
Do not overwrite $DIR when contains correct value from config.php none

Description Milan Kerslager 2009-11-09 09:10:01 UTC
Mediawiki should be updated from current 1.14.0 to one of:
- security update 1.14.1
- latest release 1.15.1

See attached URL for more details.

Comment 1 Milan Kerslager 2009-11-09 09:45:17 UTC
Version 1.15 works for viewing only. History and other requires database update, but there is a bug in /usr/share/mediawiki/maintenance/commandLine.inc which prevent update to be done (at least in some cases). Patch is attached.

Comment 2 Milan Kerslager 2009-11-09 09:46:48 UTC
Created attachment 368154 [details]
Do not overwrite $DIR when contains correct value from config.php

Comment 3 John Vandenberg 2013-12-07 01:43:40 UTC
Comment on attachment 368154 [details]
Do not overwrite $DIR when contains correct value from config.php

The default package is now 1.21.  This patch doesn't apply to 1.21 (or 1.22 which was released today)  Is this patch still needed?

Comment 4 Michael Cronenworth 2013-12-07 02:00:03 UTC
I'm not sure why I was added as CC here. I'm not the maintainer of the EPEL package.

Comment 5 Eric Christensen 2015-01-15 16:43:07 UTC
This package has been retired.  This ticket should be reopened if the package is unretired.