Git 2.10.5
authorJunio C Hamano <gitster@pobox.com>
Fri, 22 Sep 2017 05:42:22 +0000 (14:42 +0900)
committerJunio C Hamano <gitster@pobox.com>
Fri, 22 Sep 2017 05:42:22 +0000 (14:42 +0900)
Signed-off-by: Junio C Hamano <gitster@pobox.com>
Documentation/RelNotes/2.10.5.txt [new file with mode: 0644]
GIT-VERSION-GEN
RelNotes
diff --git a/Documentation/RelNotes/2.10.5.txt b/Documentation/RelNotes/2.10.5.txt
new file mode 100644 (file)
index 0000000..a498fd6
--- /dev/null
@@ -0,0 +1,17 @@
+Git v2.10.5 Release Notes
+=========================
+
+Fixes since v2.10.4
+-------------------
+
+ * "git cvsserver" no longer is invoked by "git daemon" by default,
+   as it is old and largely unmaintained.
+
+ * Various Perl scripts did not use safe_pipe_capture() instead of
+   backticks, leaving them susceptible to end-user input.  They have
+   been corrected.
+
+Credits go to joernchen <joernchen@phenoelit.de> for finding the
+unsafe constructs in "git cvsserver", and to Jeff King at GitHub for
+finding and fixing instances of the same issue in other scripts.
+
index f0b293d4ff2102b9f96581fe0e7825c679d930a5..5f322689df33a51a8da4d3e8400114b4da7a9ac5 100755 (executable)
@@ -1,7 +1,7 @@
 #!/bin/sh
 
 GVF=GIT-VERSION-FILE
-DEF_VER=v2.10.4
+DEF_VER=v2.10.5
 
 LF='
 '
index 6b165ea13fc8c5572cd905c82a51d502caec3bf5..0afb15449230ceb7086c264ec6bd653afc95e93f 120000 (symlink)
--- a/RelNotes
+++ b/RelNotes
@@ -1 +1 @@
-Documentation/RelNotes/2.10.4.txt
\ No newline at end of file
+Documentation/RelNotes/2.10.5.txt
\ No newline at end of file