Re: [limesurvey-developers] Developer meeting chat log
The leading Open Source survey tool
Brought to you by:
c_schmitz
From: Thibault Le M. <Thi...@su...> - 2007-10-25 16:33:35
|
Carsten Schmitz a écrit : > Hello Thibault, > > Thibault Le Meur wrote: > >>> - No more 1.52 releases >>> >>> >> What do you mean: no more 1.52+ packages ?? even for security fixes ? >> >> > Yes.. its only 6 days until 1.53. ok > Eh.. no. we release a version 1.53 without security holes on November 1st. > Humm... that is still a lot of work... I'm thinking about fixing the lack of db_quoting in the admin UI and sanitizing all _POST and _GET variables. I hadn't time to work on this yet :-( >>> - Lots of server hacks due to the security hole in LimeSurvey during >>> last week even alot of people were notified >>> >>> >>> >> Server Hacks on limesurvey.org website? >> Security holes in limesurvey software or in Mantis/Joomla ? >> >> >> > You should read the news on limesurvey.org sometimes ;-). I need a RSS thread reader because I admit I don't connect the the limesurvey.org website often ;-) > It was a > security hole in LimeSurvey which is fixed now. > Still alot of installations have been hacked when register_globals was > activated. > I thought there were no guys still using register_global=On on earth ;-) ? >> >> > Voice chat itself is no problem... just use any of the voice server > software available for gamers.. like TeamSpeak, Roger Wilco, etc.. If > you have a good micro and headphones you can even talk very low and > gentle and you will be clearly heard and make barely noise. > > Well.. I am all fine if we keep using IRC chat... seems to be the most > compatible medium and I don't have to write a separate protocol of the > meeting, just a quick summary. It was just an idea since we were few > people that day and communication is faster with few people. > Agreed Thibault |