This release addresses a number of important security issues that affect most deployments of Prosody. Full details are available in a separate security advisory. Upstream recommends that all deployments upgrade or apply the mitigations described in the advisory: https://prosody.im/security/advisory_20210512/
Note: Upstream updated the default config file. YUM or RPM will create a /etc/prosody/prosody.cfg.lua.rpmnew
file, so make sure you update your existing /etc/prosody/prosody.cfg.lua
to enable mod_limits after the upgrade.
CRYPTO_memcmp
)gc
to list of global optionsis_set()
to test if an object is a setPlease login to add feedback.
This update has been submitted for testing by robert.
This update's test gating status has been changed to 'ignored'.
This update's test gating status has been changed to 'waiting'.
robert edited this update.
This update's test gating status has been changed to 'ignored'.
robert edited this update.
This update has been pushed to testing.
This update has been submitted for stable by bodhi.
This update has been pushed to stable.