Issue #115: Email validation registration (conservancy/kallithea)

2015-03-23 Thread _aurelien_
New issue 115: Email validation registration https://bitbucket.org/conservancy/kallithea/issue/115/email-validation-registration _aurelien_: It seems there is no way at this time to allow user registration by mail validation. To let the user free to make his own registration alone and validate

[PATCH] template: link the last revision in the file browser to the changeset

2015-03-23 Thread Andrew Shadura
# HG changeset patch # User Andrew Shadura and...@shadura.me # Date 1426973024 -3600 # Sat Mar 21 22:23:44 2015 +0100 # Node ID 40168326214e69da0e109968eb8e89ad9df5028a # Parent 6783369ad0dd687c709c756f03559437d9f01dad template: link the last revision in the file browser to the changeset

New commits on Our Own Kallithea

2015-03-23 Thread Our Own Kallithea
stats: use the correct element id for "show more" link handler andrewsh committed on 2015-03-21 15:55:52branch: defaulttag: tipchangeset: 9c252005stats: use the correct element id for "show more" link handler M kallithea/templates/summary/summary.html (2 lines added, 2 lines removed)

[PATCH] spelling: use correct Git capitalisation where appropriate

2015-03-23 Thread Andrew Shadura
# HG changeset patch # User Andrew Shadura and...@shadura.me # Date 1427123255 -3600 # Mon Mar 23 16:07:35 2015 +0100 # Node ID 7ed7830cca7a40a0a24a6aa8d39c0d306a09f582 # Parent 9c252005e5fd69efd579b410f1160b42b183c8cf spelling: use correct Git capitalisation where appropriate diff --git

Re: [oss-security] Dulwich security issue (fwd)

2015-03-23 Thread Mads Kiilerich
On 03/23/2015 09:14 AM, Adi Kriegisch wrote: Hey! ...anything we need to do about that? I don't know. I guess all we can do is to inform all users that they probably have it installed as a dependency and that they should upgrade. We could perhaps make a secure version mandatory in next

Re: [PATCH] pullrequests: saving raw_id instead of branch in org_ref

2015-03-23 Thread Mads Kiilerich
On 03/20/2015 01:18 PM, Thomas De Schampheleire wrote: Regardless of this TODO, I think the patch is fine in removing a different behavior depending on the fact that the PR head happens to be the tip at the time of PR creation or not. Yes - I was verifying it in production. Pushed - thanks!

Re: [oss-security] Dulwich security issue (fwd)

2015-03-23 Thread Andrew Shadura
Hi, On 23 March 2015 at 15:41, Mads Kiilerich m...@kiilerich.com wrote: I don't know. I guess all we can do is to inform all users that they probably have it installed as a dependency and that they should upgrade. We could perhaps make a secure version mandatory in next release. I can

Re: [PATCH 0 of 1 RFC] login-required pragma

2015-03-23 Thread Mads Kiilerich
On 03/22/2015 02:34 PM, Thomas De Schampheleire wrote: Hi Mads, On Fri, Mar 20, 2015 at 1:09 AM, Mads Kiilerich m...@kiilerich.com wrote: On 03/19/2015 09:34 PM, Thomas De Schampheleire wrote: Hi, Issue I'm trying to solve is this: we're implementing a script to create a pull request

[oss-security] Dulwich security issue (fwd)

2015-03-23 Thread Adi Kriegisch
Hey! ...anything we need to do about that? -- Adi ---BeginMessage--- Ivan Fratric of the Google Security Team has found a buffer overflow in the C implementation of the apply_delta() function in Dulwich. This function is used when accessing Git objects in pack files. Any Git server or client

Re: [oss-security] Dulwich security issue (fwd)

2015-03-23 Thread Mads Kiilerich
On 03/23/2015 04:00 PM, Adi Kriegisch wrote: 0.9.9 seems to be a fix for 0.9.8 that does a version update too but it does not seem to be pip installable from any known sources. It is now available with pip install --upgrade dulwich==0.9.9 - after patching Kallithea setup.py and expanding the