From 9df9c484031e313d3c6f1f85951d6b67b931f536 Mon Sep 17 00:00:00 2001 From: Galen Charlton Date: Thu, 16 Feb 2017 15:13:17 -0500 Subject: [PATCH] update release notes for 2.5.0-alpha2 Signed-off-by: Galen Charlton --- doc/RELEASE_NOTES.txt | 18 ++++++++++++++++-- 1 file changed, 16 insertions(+), 2 deletions(-) diff --git a/doc/RELEASE_NOTES.txt b/doc/RELEASE_NOTES.txt index 3c42366..e3fa202 100644 --- a/doc/RELEASE_NOTES.txt +++ b/doc/RELEASE_NOTES.txt @@ -1,5 +1,5 @@ -Release notes for OpenSRF 2.5.0-alpha -===================================== +Release notes for OpenSRF 2.5.0-alpha2 +====================================== Supported platforms ------------------- @@ -9,6 +9,18 @@ The following Linux distributions are supported: * Fedora 17, 18 * Ubuntu 14.04 (Trusty Tahr) and 16.04 LTS (Xenial Xerus) +Changes in 2.5.0-alpha2 +----------------------- +OpenSRF 2.5.0-alpha2 is a security release; testers of OpenSRF 2.5.x +are strongly urged to upgrade as soon as possible. + +The second alpha release of OpenSRF 2.5 includes the following changes: + +* LP#1652382: improve normalization of memcache keys to avoid potential +denial of service and privilege escalation attacks. +* LP#1652122: fix an infinite recursion bug in opensrf.system.method.all. +* LP#1655449: propagate bundling/chunking limits to subrequests. + New features in 2.5.0-alpha --------------------------- @@ -132,5 +144,7 @@ We would like to thank the following people who contributed to OpenSRF 2.5: * Galen Charlton * Jason Etheridge * Jason Stephenson + * Jeff Davis + * Kathy Lussier * Mike Rylander * Remington Steed -- 2.43.2