From 69c9fbff698b3516ffc216fd8552736b9f040168 Mon Sep 17 00:00:00 2001 From: Jeffrey Stedfast Date: Thu, 13 Mar 2003 20:09:27 +0000 Subject: reverted mail-display.c and mail-format.c fixes - pondering better fixes svn path=/trunk/; revision=20279 --- mail/ChangeLog | 17 ----------------- 1 file changed, 17 deletions(-) (limited to 'mail/ChangeLog') diff --git a/mail/ChangeLog b/mail/ChangeLog index a8be5524cc..ec8c9e200c 100644 --- a/mail/ChangeLog +++ b/mail/ChangeLog @@ -1,20 +1,3 @@ -2003-03-12 Jeffrey Stedfast - - Security vulnerability fixes. - - * mail-display.c (do_external_viewer): Make sure that we don't - launch a bonobo control to view a mime-type that we handle - internally, otherwise maliciously formed HTML mail using - tags could potentially launch a bonobo vontrol to view the mime - part bypassing any checks that Evolution might do on the data - normally. - - * mail-format.c (handle_text_html, attachment_header) - (handle_image, handle_via_bonobo): Encode the result from - get_cid() so that malicious Content-Id strings cannot bypass the - user's preference to not load http images, force a bonobo control - to load passing it arbitrary data, etc. - 2003-03-12 Jeffrey Stedfast * mail-signature-editor.c (menu_file_save_cb): Rewritten to do the -- cgit v1.2.3