Oct 27 2008

Files Changed In Drupal Upgrade From 5.11 - 5.12


Filed under: Content Management Systems » Drupal,
Tools:

Files Changed in Drupal Upgrade from 5.11 to 5.12

Here is a list of files that have been modified since Drupal version 5.11. Image and info files are not included. We will list the directories followed by the files within them that were updated. While we've done our best to maintain their accuracy, we do not guarantee the correctness of these lists, and will not be held responsible for any problems you encounter as a result of their use. If unsure, please follow the official upgrade instructions included in your distribution's download.

Important Security Fixes in Drupal 5.12

FILE INCLUSION

On a server configured for IP-based virtual hosts, Drupal may be caused to
include and execute specifically named files outside of its root directory.
This bug affects both Drupal 5 and Drupal 6.

CROSS SITE SCRIPTING

The title of book pages is not always properly escaped, enabling users with the
"create book content" permission or the permission to edit any node in the book
hierarchy to insert arbitrary HTML and script code into pages. Such a Cross site
scripting attack may lead to the attacker gaining administrator access.

The upgrade to 5.12 is essential. Visit Drupal.org for details.

root

  • CHANGELOG.txt

includes

  • bootstrap.inc

modules

  • system/system.module

note: the above module changes do not include the .info files, which always change. You will need to upload these as well in order for update status to recognize your update. In short, we recommend simply uploading all core module files.

Average: 5 (5 votes)
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.
  • Textual smileys will be replaced with graphical ones.

More information about formatting options

Captcha
This question is used to make sure you are a human visitor and to prevent spam submissions.
Copy the characters (respecting upper/lower case) from the image.