Log

description author age
xmlhandlers/xmppstream: Stop the parser when encountering restricted XML, completing the fix for the billion laughs attack Matthew Wild Thu, 02 Jun 2011 15:19:05 +0100
Merge 0.8->trunk Matthew Wild Thu, 02 Jun 2011 02:31:18 +0100
mod_storage_sql: Switch to MEDIUMTEXT for the 'value' column when using MySQL, as it imposes a 64K limit otherwise, potentially truncating data. Automatically upgrades existing tables. Matthew Wild Thu, 02 Jun 2011 02:30:26 +0100
util.json: Fixed handling of truncated JSON. Waqas Hussain Thu, 02 Jun 2011 05:36:15 +0500
Merge 0.8->trunk Matthew Wild Thu, 02 Jun 2011 00:26:48 +0100
Merge 0.7->0.8 Matthew Wild Thu, 02 Jun 2011 00:26:23 +0100
Merge 0.6->0.7 Matthew Wild Thu, 02 Jun 2011 00:25:44 +0100
xmlhandlers: Don't restrict CDATA Matthew Wild Thu, 02 Jun 2011 00:23:41 +0100
Merge 0.8->trunk Matthew Wild Thu, 02 Jun 2011 00:05:33 +0100
Merge 0.7->0.8 Matthew Wild Wed, 01 Jun 2011 23:26:39 +0100
Merge 0.6->0.7 Matthew Wild Wed, 01 Jun 2011 23:25:24 +0100
xmlhandlers: Reject XML comments, processing instructions and (if supported by LuaExpat) DTDs. If not supported, log a warning. [Backport of 7cc426988bcc in trunk] Matthew Wild Wed, 01 Jun 2011 23:20:54 +0100
util.xmppstream: Reject XML comments, processing instructions and (if supported by LuaExpat) DTDs. If not supported, log a warning. Matthew Wild Wed, 01 Jun 2011 23:02:10 +0100
util.xmppstream: Reject XML comments, processing instructions and (if supported by LuaExpat) DTDs. If not supported, log a warning. Matthew Wild Wed, 01 Jun 2011 23:02:10 +0100
util.encodings: Check return values before proceeding Paul Aurich Sun, 22 May 2011 16:14:10 -0700
util.encodings: Swap code order ("ifndef" bugs me) Paul Aurich Sun, 22 May 2011 15:40:16 -0700
util.encodings: Fix idna.to_unicode Paul Aurich Sun, 22 May 2011 15:26:03 -0700
mod_register: Change the default for 'allow_registration' from true to false, most users shouldn't be affected as allow_registration is already explicitly set in the default config file. Matthew Wild Sat, 28 May 2011 00:23:05 +0100
mod_register: Move allow_registration option into an upvalue for efficiency (now it is being checked on every new c2s stream) Matthew Wild Sat, 28 May 2011 00:21:12 +0100
Advertise in-band registration support. Glenn Maynard Fri, 27 May 2011 17:04:43 +0100
net.dns: Support for resolving AAAA records Matthew Wild Mon, 16 May 2011 19:33:02 +0100
MUC: Include occupant count in room disco#info response. Waqas Hussain Sat, 07 May 2011 21:17:03 +0500
mod_roster: Remove <optional/> from roster version stream feature, as per latest specs. Waqas Hussain Sat, 07 May 2011 21:16:25 +0500
mod_dialback: Remove <optional/> from stream feature, as per latest specs. Waqas Hussain Sat, 07 May 2011 21:16:06 +0500
sessionmanager: Log reason when destroying a session. Waqas Hussain Sat, 07 May 2011 21:15:34 +0500
s2smanager: Log reason when destroying a session. Waqas Hussain Sat, 07 May 2011 21:15:13 +0500
Merge 0.8->trunk Matthew Wild Wed, 04 May 2011 23:13:50 +0100
mod_muc: Remove room from memory when it is made non-persistent and is empty Matthew Wild Wed, 04 May 2011 23:12:53 +0100
Merge 0.8->trunk Matthew Wild Wed, 20 Apr 2011 18:20:29 +0100
mod_legacyauth: Disallow on unencrypted connections by default, heed allow_unencrypted_plain_auth config option (thanks Maranda/Zash) Matthew Wild Wed, 20 Apr 2011 18:19:28 +0100