Skip to Content.
Sympa Menu

announce - [announce@sympa] Sympa 6.2.74 released

Subject: Announcements of new sympa release

List archive

Chronological Thread  
  • From: IKEDA Soji <>
  • To:
  • Subject: [announce@sympa] Sympa 6.2.74 released
  • Date: Mon, 16 Dec 2024 20:49:10 +0900 (JST)

Title: Sympa 6.2.74 released

Sympa 6.2.74 released

What's Changed

Notice

This release includes a fix for [CVE-2024-55919] Improper input validation on generic SSO login #1917.

Administorators setting generic_sso paragraph with force_email_verify parameter enabled in auth.conf should upgrade Sympa to this version or take measure. For more details see the Security Advisory Sympa SA 2024-001.

Incompatible changes

  • Notes for packagers:
  • Some distributions including Debian and the descendants separate perldoc from the package for Perl. On this case activating perldoc is encouraged for better user experiences #1832.
  • Fix for bug #1884 needs additional optional module Unicode-UTF8. This module will be made mandatory on the release of Sympa in the near future.
  • DKIM signatures in outgoing messages are no longer removed even if they are invalid #1852. On the other hand, remove_dkim_headers parameter was introduced for their removal, which is rarely needed #1898.
  • If custom_subject contains a sequence number, it is always placed at the beginning of the subject. If it does not contain, it is placed at the same position as before #1811.

Implemented enhancements

  • Overall statistics panel for each domain (#1661) by @ikedas in https://github.com/sympa-community/sympa/pull/1664
  • Inclusion from LDAP data sources supports RFC 2696 Paged Results control (#57) by @farialima in https://github.com/sympa-community/sympa/pull/1733
  • WWSympa: Conform some fields in HTTP responses to current standards by @ikedas in https://github.com/sympa-community/sympa/pull/1679
  • Lower the list of months in the calendar and allow it scrolling by @ikedas in https://github.com/sympa-community/sympa/pull/1672
  • Additional localised "Re:" prefixes in subject by @ikedas in https://github.com/sympa-community/sympa/pull/1668
  • Add .eml extension to archives files by @ldidry in https://github.com/sympa-community/sympa/pull/1582
  • WWSympa: Save default sort key in review (#1577) by @ikedas in https://github.com/sympa-community/sympa/pull/1579
  • Display name in From: header field should be quoted / unquoted appropriately by @ikedas in https://github.com/sympa-community/sympa/pull/1572
  • WWSympa: Detect web crawlers by @ikedas in https://github.com/sympa-community/sympa/pull/1667
  • Improve diagnostic messages in the DSNs generated by Sympa by @ikedas in https://github.com/sympa-community/sympa/pull/1690
  • (AB) add an invite feature to WWSympa by @adam12b1 in https://github.com/sympa-community/sympa/pull/1849
  • Allow "custom_subject" to be at the beginning of the subject (#1811) by @ikedas in https://github.com/sympa-community/sympa/pull/1817
  • Fix cross-robot list inclusion (#1797) by @dpoon in https://github.com/sympa-community/sympa/pull/1798
  • Expose update_epoch on get_closed_lists. by @racke in https://github.com/sympa-community/sympa/pull/1865
  • Parameter for syslog socket should allow options such as host name by @ikedas in https://github.com/sympa-community/sympa/pull/1841
  • LDAP: Add deref option to specify how to dereference aliases by @ikedas in https://github.com/sympa-community/sympa/pull/1892
  • Several fixes/improvements on ARC seal & DKIM signature by @ikedas in https://github.com/sympa-community/sympa/pull/1869
  • DKIM-Signature header fields should not be removed even if invalid (#1852) by @ikedas in https://github.com/sympa-community/sympa/pull/1898

Fixed bugs

  • When owners/moderators are added, "N subscribers added" is shown by @ikedas in https://github.com/sympa-community/sympa/pull/1584
  • Confusing labels for ttl and distribution_ttl (#896) by @ikedas in https://github.com/sympa-community/sympa/pull/1585
  • Correct texts about obsoleted dkim authentication method for scenarios by @ikedas in https://github.com/sympa-community/sympa/pull/1599
  • Deprecate "System log" setting in Listmaster Admin menu (#1649) by @ikedas in https://github.com/sympa-community/sympa/pull/1650
  • Some typos in docs and comments by @ikedas in https://github.com/sympa-community/sympa/pull/1653
  • WWSympa: Invalid input on sso_login form floods listmaster notification (#1654) by @ikedas in https://github.com/sympa-community/sympa/pull/1655
  • Broken links in sympa_config.pod by @ikedas in https://github.com/sympa-community/sympa/pull/1675
  • Can't locate object method "new" via package "Sympa::Aliases" (#1710) by @ikedas in https://github.com/sympa-community/sympa/pull/1712
  • SOAP: Fix typos in sympa.wsdl by @ikedas in https://github.com/sympa-community/sympa/pull/1698
  • 🐛 — Fix error when rejecting message from direct URL by @ldidry in https://github.com/sympa-community/sympa/pull/1687
  • Missing validation on Digest frequency in Edit Config (#1742) by @ikedas in https://github.com/sympa-community/sympa/pull/1745
  • Upgrade command should fail if no previuos version number can be found. by @woodfighter in https://github.com/sympa-community/sympa/pull/1741
  • Default value of dkim_signature_apply_on in domain context was ignored (#1739) by @ikedas in https://github.com/sympa-community/sympa/pull/1740
  • INFO mail command pulls different owners and/or moderators than those with web UI (#1732) by @ikedas in https://github.com/sympa-community/sympa/pull/1734
  • DSN with status 4.3.0 may mess the parent of nested list (#1699) by @ikedas in https://github.com/sympa-community/sympa/pull/1726
  • WWSympa: Update jquery-ui from 1.12.1 to 1.13.2 (#1719) by @ikedas in https://github.com/sympa-community/sympa/pull/1720
  • WWSympa: Accessing Navigation Menu, focus go back to Top Bar (#1747) by @ikedas in https://github.com/sympa-community/sympa/pull/1755
  • RSS: lastBuildDate element in RSS feed was inproperly formatted by @ikedas in https://github.com/sympa-community/sympa/pull/1680
  • A workaround for the browser back to let the "Please Wait..." spinner remain by @ikedas in https://github.com/sympa-community/sympa/pull/1666
  • Manually deleted list blocks closure of the list which has been included by the former (#1660) by @ikedas in https://github.com/sympa-community/sympa/pull/1662
  • "warning: ignoring prerequisites on suffix rule definition" with GNU make 4.3 by @ikedas in https://github.com/sympa-community/sympa/pull/1651
  • MacPorts: Fixes for service/sympa.in by @ikedas in https://github.com/sympa-community/sympa/pull/1642
  • Broken output with SOAP API due to mixture of byte- and utf8-strings (#1541) by @ikedas in https://github.com/sympa-community/sympa/pull/1592
  • WWSympa: Direct link to reject action crashes by @ikedas in https://github.com/sympa-community/sympa/pull/1704
  • WWSympa: Enable autofilling of password only if necessary by @ikedas in https://github.com/sympa-community/sympa/pull/1563
  • Noise in Apache error_log (#1325) by @ikedas in https://github.com/sympa-community/sympa/pull/1570
  • sympa instantiate: Progress bar could not be inactivated by @ikedas in https://github.com/sympa-community/sympa/pull/1568
  • WWSympa: Screen Reader needs clear labels for text fields (#1748) by @ikedas in https://github.com/sympa-community/sympa/pull/1779
  • ♿ — WWSympa: No visual focus indicator when accessing elements by keyboard (#1744) by @ldidry in https://github.com/sympa-community/sympa/pull/1756
  • Use browser's built-in "date" widget instead of jQuery UI Datepicker that is inaccessible using keyboard (#1751) by @ikedas in https://github.com/sympa-community/sympa/pull/1782
  • ♿ — WWSympa: The items in the multiselect box are not readable fully (#1752) by @ldidry in https://github.com/sympa-community/sympa/pull/1757
  • Accessibility: Fix some problems (#1753) (#1761) (#1763) (#1767) by @ikedas in https://github.com/sympa-community/sympa/pull/1783
  • Meaningful error message should be shown for unauthenticated user if privileges are required (#1692) by @ikedas in https://github.com/sympa-community/sympa/pull/1827
  • DKIM: i= tag may not match in some auto-generated messages (#1716) by @ikedas in https://github.com/sympa-community/sympa/pull/1717
  • Add links to create or recreate password (#1713) by @ikedas in https://github.com/sympa-community/sympa/pull/1718
  • The length of boundary lines in multipart messages could exceed 70 octets (#1795) by @ikedas in https://github.com/sympa-community/sympa/pull/1809
  • Setting invite sender as From: field should be avoided (#1846) by @ikedas in https://github.com/sympa-community/sympa/pull/1882
  • WWSympa: Uploaded file names in UTF-8 were garbled (#1802) by @ikedas in https://github.com/sympa-community/sympa/pull/1803
  • 🐛 — [moderation] Show message content when clicking on its object by @ldidry in https://github.com/sympa-community/sympa/pull/1709
  • PostgreSQL/SQLite: Sympa tries creating temporary views in databases unnecessarily (#1812) by @ikedas in https://github.com/sympa-community/sympa/pull/1813
  • Update a dependency MIME-EncWords (#1787) by @ikedas in https://github.com/sympa-community/sympa/pull/1800
  • Stop "do_distribute" actions from Web interface from generating backscatter emails to sympa-request alias (#1737) by @dpc22 in https://github.com/sympa-community/sympa/pull/1818
  • If lock fails, details should be included in the error message by @ikedas in https://github.com/sympa-community/sympa/pull/1824
  • Noise in Apache error_log (again) (#1325) by @ikedas in https://github.com/sympa-community/sympa/pull/1830
  • CLI: With sympa config key=value, key couldn't contain dot by @ikedas in https://github.com/sympa-community/sympa/pull/1831
  • Debian Bug#1062398 Lacks dependency on perldoc utility by @ikedas in https://github.com/sympa-community/sympa/pull/1832
  • Prevent custom_header with non-ASCII characters (#1840) by @ikedas in https://github.com/sympa-community/sympa/pull/1844
  • Incorrect "No bouncing members" on a large list with small number of bouncers (#1842) by @ikedas in https://github.com/sympa-community/sympa/pull/1845
  • WWSympa: Invalid UTF-8 sequences in input may trigger crashing (#1884) by @ikedas in https://github.com/sympa-community/sympa/pull/1885
  • WWSynmpa: do_distribute: Confirmation was not always performed by @ikedas in https://github.com/sympa-community/sympa/pull/1889

Other changes

  • Tracking: Remove outdated heuristics for bounce processing by @ikedas in https://github.com/sympa-community/sympa/pull/1701
  • (AB) add an invite feature to WWSympa (#648) by @ikedas in https://github.com/sympa-community/sympa/pull/1881
  • typos by @ikedas in https://github.com/sympa-community/sympa/pull/1856
  • postpone making Unicode::UTF8 mandatory by @ikedas in https://github.com/sympa-community/sympa/pull/1905

New Contributors

  • @farialima made their first contribution in https://github.com/sympa-community/sympa/pull/1733
  • @woodfighter made their first contribution in https://github.com/sympa-community/sympa/pull/1741
  • @adam12b1 made their first contribution in https://github.com/sympa-community/sympa/pull/1849
  • @dpoon made their first contribution in https://github.com/sympa-community/sympa/pull/1798

Full Changelog: https://github.com/sympa-community/sympa/compare/6.2.72...6.2.74



  • [announce@sympa] Sympa 6.2.74 released, IKEDA Soji, 12/16/2024

Archive powered by MHonArc 2.6.19+.

Top of Page