Zope 1.10.4 patch
Zope 1.10.4 patch release
This is the Zope 1.10.4 patch release. This patch should *only* be used if you are running a Zope 1.10.3 installation and for some reason cannot update your installation to Zope 2.1.2.
It consists of this file and the file lib/python/OFS/DTMLMethod.py.
It addresses the following security bug:
- Thanks to Kevin Littlejohn's sleuthing, a sizable problem in the security machinery in DTML has been brought to our attention and resolved. The problem is most acute in situations where untrusted people can edit DTML documents or methods.
To install:
- Download the patch distribution
- Rename the file lib/python/OFS/DTMLMethod.py to keep a backup copy.
- Extract the distribution into a Zope 1.10.3 installation.
- Restart your Zope installation