Compare commits

...
Sign in to create a new pull request.

130 commits

Author SHA1 Message Date
d95ec89641 WordPress 4.7.3 Security and Maintenance Release
(cherry picked from commit 093664f076)
(cherry picked from commit d12ec50539)
2017-03-07 06:43:31 +01:00
e60bfdff84 WordPress 4.7.2 Security Release
(cherry picked from commit 8007b8d8ef)
2017-01-27 10:50:31 +01:00
46877e2238 WordPress 4.7.1 Security and Maintenance Release
(cherry picked from commit 06ad60dce1)
2017-01-12 08:36:47 +01:00
ec225aceb8 WordPress 4.7 “Vaughan”
(cherry picked from commit 0f6aae9a62)
2016-12-07 14:48:48 +01:00
21e469f284 WordPress 4.6.1 Security and Maintenance Release
(cherry picked from commit b2e1003fec)
2016-09-08 08:57:14 +02:00
6d6c18faf4 WordPress 4.6 “Pepper”
(cherry picked from commit cc7bdefab7)
2016-09-03 09:00:53 +02:00
cb2554daa8 WordPress 4.5.3 Maintenance and Security Release
(cherry picked from commit 9abc1b7ba9)
2016-06-22 11:16:28 +02:00
98a490d084 WordPress 4.5.2 Security Release
(cherry picked from commit 22f8927f3a)
2016-05-11 07:34:29 +02:00
afcab2ff2d WordPress 4.5.1 Maintenance Release
(cherry picked from commit f295541234)
2016-04-27 07:18:13 +02:00
3bfb3c2ba7 WordPress 4.5 “Coleman”
(cherry picked from commit a93d4e6b59)
2016-04-13 08:45:05 +02:00
79fd8a652e WordPress 4.4.2 Security and Maintenance Release
(cherry picked from commit ca28ae363f)
2016-02-03 14:45:39 +01:00
898c81512a WordPress 4.4.1 Security and Maintenance Release
(cherry picked from commit aaa9b6d56f)
2016-01-07 13:13:07 +01:00
a91157d02e WordPress 4.4 “Clifford”
(cherry picked from commit 5b3b5187e7)
2015-12-09 17:39:46 +01:00
295fdee84f WordPress 4.3.1 Security and Maintenance Release
(cherry picked from commit 2edf6e9b3d)
2015-09-16 08:07:38 +02:00
32eeb5e2f9 WordPress 4.3 “Billie”
(cherry picked from commit 0606c08b0b)
2015-08-26 10:16:49 +02:00
8b43d86b5f WordPress 4.2.4 Security and Maintenance Release
(cherry picked from commit baf95ff4bf)
2015-08-04 15:07:39 +02:00
9709e0a87b WordPress 4.2.3 Security and Maintenance Release
(cherry picked from commit 5b6064da27)
2015-07-24 07:02:45 +02:00
b7910ad6ab WordPress 4.2.2 Security and Maintenance Release
(cherry picked from commit c3247e0fb0)
2015-05-07 07:24:16 +02:00
bb1a34719a WordPress 4.2.1 Security Release
(cherry picked from commit 12860fe24e)
2015-04-28 09:01:09 +02:00
9d22b2da82 WordPress 4.1.3 Maintenance Release
(cherry picked from commit 325a6b6697)
2015-04-24 11:02:19 +02:00
d011fe9fcc update to 4.1.2 (security)
(cherry picked from commit 146dfc1596)
2015-04-23 13:28:41 +02:00
2ed36900c0 4.1.1 sources
(cherry picked from commit 8deee85d43)
2015-02-19 09:05:28 +01:00
f4ed7071db WordPress 4.1.1 Maintenance Release
(cherry picked from commit 0bf276fc2d)
2015-02-19 09:05:27 +01:00
9ab1dede2a update to 4.1
(cherry picked from commit cdc67b2be0)
2014-12-22 07:22:04 +01:00
649ac4773f WordPress 4.0.1 Security Release
(cherry picked from commit ede7a54071)
2014-11-21 08:27:03 +01:00
f094fbbea3 update to WordPress 4.0 “Benny”
(cherry picked from commit 00237e3af1)
2014-09-08 13:59:40 +02:00
Remi Collet
4779ee0dd8 - config dir only readable by apache group, better fix for #1124582
- fix license handling

(cherry picked from commit ebc8928969)
2014-08-08 11:21:30 +02:00
Remi Collet
b74b700906 - update to 3.9.2 Security Release #1127547
- config file only readable by apache user (httpd or php-fpm) #1124582

(cherry picked from commit cde8ef0645)
2014-08-07 16:50:05 +02:00
396136bc53 update to 3.9.1
(cherry picked from commit 1e632fae73)
2014-05-09 06:47:58 +02:00
b005f9f8d2 update to 3.9 “Smith”
(cherry picked from commit 74719500d2)
2014-05-07 17:59:34 +02:00
2f2b541a65 update to 3.8.3 2014-04-15 13:26:08 +02:00
9c59f9738c update to 3.8.2 Security Release
- fix privilege escalation issue  CVE-2014-0165
- fix authentication bypass issue CVE-2014-0166

(cherry picked from commit 8bfaea7ed1)
2014-04-09 17:08:50 +02:00
e2050f5b11 update to 3.8.1 + disable auto-updater 2014-01-25 08:14:31 +01:00
9c8eccaf77 - update to 3.8 “Parker” #1043104
- link to README.fedora in package description
- add note about optional packages #1037516
- add php dependencies: ereg, ftp, gd, xml
- del php dependencies: pdo, reflection

(cherry picked from commit b99791fd2e)
2013-12-16 15:41:24 +01:00
c42cfa9af6 update to 3.7.1 (bugfixes)
(cherry picked from commit 64afcf22fe)
2013-10-30 08:15:38 +01:00
53cd9832fd - update to 3.7
- requires ca-certificates for ca-bundle.crt
2013-10-25 15:00:03 +02:00
c41c150899 monday's typo 2013-06-24 09:52:30 +02:00
fe1d9b9c9b fix ignore list 2013-06-24 09:52:28 +02:00
c88ca93061 version 3.5.1, various bug and security fixes:
CVE-2013-2173 CVE-2013-2199 CVE-2013-2200 CVE-2013-2201
  CVE-2013-2202 CVE-2013-2203 CVE-2013-2204
2013-06-24 09:52:21 +02:00
0da83deed5 provides POP3 class #905867 2013-02-12 12:26:56 +01:00
d4453b59cc fix simplepie links (for all branches) 2013-01-30 17:20:15 +01:00
b8bae8f7e7 update to 3.5.1 (security) 2013-01-30 17:07:48 +01:00
Matěj Cepl
fe89485815 New upstream release. 2012-12-12 15:05:38 +01:00
Matěj Cepl
2d17158ade Port to EPEL-5.
In order to fix #855156
2012-09-16 17:12:56 +02:00
Matěj Cepl
777ac2043a Merge remote-tracking branch 'origin/el6' into el5 2012-09-16 15:19:07 +02:00
Matěj Cepl
a32ef10d9f Merge branch 'f17' into el6 2012-09-07 00:21:53 +02:00
Matěj Cepl
6cea378025 Merge branch 'master' into f17
Conflicts:
	.gitignore
	sources
	wordpress.spec
2012-09-07 00:19:22 +02:00
Matěj Cepl
d13d828b55 Merge branch 'f15' into el6 2012-06-28 21:39:42 +02:00
Matěj Cepl
c3a27fde68 New upstream release (minor & security changes) 2012-06-28 20:54:12 +02:00
Matěj Cepl
d0926c3531 Merge branch 'f15' into el6 2012-06-14 01:10:41 +02:00
Matěj Cepl
ef7ca4bf10 New upstream release
Conflicts:
	.gitignore
	sources
	wordpress.spec
2012-06-13 23:29:12 +02:00
Matěj Cepl
374b88d468 Merge branch 'f17' into el6 2012-04-23 13:56:47 +02:00
Matěj Cepl
01a909a7fd Merge branch 'f17' into f15 2012-04-23 13:31:54 +02:00
Matěj Cepl
2710f1675d Fix changelog 2012-04-23 12:47:45 +02:00
Matěj Cepl
7b9b4f88a1 New upstream release (security release). 2012-04-23 12:31:57 +02:00
Matěj Cepl
6f939cdc1d Merge branch 'master' into el6 2012-01-05 11:44:36 +01:00
Matěj Cepl
12a32dcef7 Merge branch 'master' into el5 2012-01-05 11:43:21 +01:00
Matěj Cepl
210d5da0de Merge branch 'master' into f15 2012-01-05 11:41:46 +01:00
Matěj Cepl
a71850787d Merge branch 'master' into f15 2011-12-13 00:57:38 +01:00
Matěj Cepl
d7fd4549a6 Fix order in changelog 2011-12-13 00:55:48 +01:00
Matěj Cepl
ced29c5fe9 Merge branch 'master' into el6
Conflicts:
	wordpress.spec
2011-12-13 00:52:52 +01:00
Matěj Cepl
5f2192670a Fix version requirement and another upstream beta release.
Cherry picked from [3ea1921].
2011-11-11 21:28:45 +01:00
Matěj Cepl
76e9e267b9 Merge branch 'el6' into f14
Conflicts:
	.gitignore
2011-07-13 02:35:42 +02:00
Matěj Cepl
05844514b7 Merge branch 'master' into f14 2011-07-13 02:32:10 +02:00
Matěj Cepl
38915aef40 Merge branch 'master' into el6 2011-07-13 02:10:56 +02:00
Matěj Cepl
73abfe07ef Remove FSF address patch 2011-07-13 02:10:39 +02:00
Matěj Cepl
e153eb0f94 Merge branch 'f15' into f14
Conflicts:
	.gitignore
	sources
	wordpress.spec
2011-07-05 11:04:43 +02:00
Matěj Cepl
9f239cfc81 Merge branch 'master' into f14
Conflicts:
	.gitignore
	sources
	wordpress.spec
2011-07-05 11:02:25 +02:00
Matěj Cepl
2e078073cb Merge branch 'el6' into el5 2011-07-05 03:20:24 +02:00
Matěj Cepl
0bdcec9908 Merge branch 'master' into el6
Conflicts:
	.gitignore
	sources
	wordpress.spec
2011-07-05 03:05:45 +02:00
Matěj Cepl
1315178857 Merge branch 'f15' into el5
Conflicts:
	wordpress.spec
2011-06-29 21:44:09 +02:00
Matěj Cepl
4214abd909 New upstream release. 2011-06-29 21:35:09 +02:00
Matěj Cepl
ad037120e1 Merge branch 'f13' into f14 2011-06-29 21:33:57 +02:00
Matěj Cepl
73aa093c0f Actually don't forget to add new sources. 2011-06-29 21:32:43 +02:00
Matěj Cepl
7fff699c89 New upstream release. 2011-06-29 21:30:31 +02:00
Matěj Cepl
e8bc259282 Merge branch 'el6' into f14 2011-06-02 14:40:05 +02:00
Matěj Cepl
a7b92a8414 Merge branch 'el6' into f13 2011-06-02 14:40:00 +02:00
Matěj Cepl
a700aa311c Merge branch 'el6' into el5 2011-06-02 14:39:51 +02:00
Matěj Cepl
fad0a97707 Merge branch 'master' into el5 2011-06-01 21:02:53 +02:00
Matěj Cepl
fb63954c33 Merge branch 'master' into f14 2011-06-01 21:01:35 +02:00
Matěj Cepl
622441d177 Merge branch 'master' into f13 2011-06-01 21:01:03 +02:00
Matěj Cepl
6690d558e4 Merge branch 'master' into f14 2011-05-02 16:32:00 +02:00
Matěj Cepl
a94ce28b5e Merge branch 'master' into f13 2011-05-02 16:26:56 +02:00
Matěj Cepl
f0b2641abb Merge branch 'master' into el5 2011-05-02 16:26:01 +02:00
Jon Ciesla
32e657b357 Spec error. 2011-03-21 10:19:37 -05:00
Jon Ciesla
e84c4a4d61 Merge branch 'el6' into el5
Conflicts:
	wordpress-debian_patches_hello.patch
	wordpress.spec
2011-03-21 10:12:07 -05:00
Jon Ciesla
d53770ea42 Merge branch 'f14' into f13 2011-03-21 09:34:43 -05:00
Jon Ciesla
ea38f9f434 Spec error. 2011-03-21 09:26:48 -05:00
Jon Ciesla
8c600ef208 Spec error. 2011-03-21 09:25:14 -05:00
Jon Ciesla
95570ae122 Merge branch 'f15' into f14
Conflicts:
	wordpress-debian_patches_hello.patch
	wordpress.spec
2011-03-21 09:22:31 -05:00
Jon Ciesla
176600fe24 Merge branch 'f13' into el5 2011-01-11 11:06:40 -06:00
Jon Ciesla
6ad0713bb3 Merge branch 'f14' into f13 2011-01-11 11:02:00 -06:00
Jon Ciesla
498511599b Fix for BZ 666782. 2011-01-11 10:55:45 -06:00
Jon Ciesla
3d3f578a96 Merge branch 'f13' into el5
Conflicts:
	wordpress.spec
2010-12-23 09:13:26 -06:00
Jon Ciesla
f051692f8f Merge branch 'f14' into f13 2010-12-23 09:07:20 -06:00
Jon Ciesla
8ff4ce2bdf Multiple fixes. 2010-12-23 09:02:21 -06:00
Fedora Release Engineering
0903f0ac5a dist-git conversion 2010-07-29 15:23:46 +00:00
Fedora Release Engineering
66439e29b8 dist-git conversion 2010-07-29 15:23:41 +00:00
Jesse Keating
9c954c402f Initialize branch F-13 for wordpress 2010-02-17 03:27:35 +00:00
Bill Nottingham
cb2580a1f1 Fix typo that causes a failure to update the common directory. (releng
#2781)
2009-11-26 01:18:04 +00:00
61016503d4 - updated to 2.8.6 (Security Release) 2009-11-16 09:46:59 +00:00
7400537580 - updated to 2.8.5 (Hardening Release) 2009-10-21 14:24:14 +00:00
d6d6c1da41 - updated to 2.8.4 (security fixes were already available with 2.8.3-2) 2009-08-30 19:38:57 +00:00
d822cd3089 - another security update to fix "Remote admin reset password":
http://lists.grok.org.uk/pipermail/full-disclosure/2009-August/070137.h
    tml
2009-08-11 11:55:22 +00:00
42985462c5 - updated to 2.8.3 for security fixes 2009-08-05 09:49:02 +00:00
0b2cb20c8c - updated to 2.8.3 for security fixes 2009-08-05 07:46:30 +00:00
d699cda697 - updated to 2.8.2 for security fixes - BZ 512900
- fixed "wrong-script-end-of-line-encoding" of license.txt
- correctly disable auto update check
- fixed an error message from 'find' during the build
2009-07-28 08:53:46 +00:00
33d1baf5dc - Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild 2009-07-10 20:19:28 +00:00
a1112b936e - Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild 2009-06-22 07:58:34 +00:00
0958094589 - updated to 2.6.5 2008-11-26 10:32:42 +00:00
2d973d0502 - updated to 2.6.3 2008-10-24 13:13:08 +00:00
fa8feb3a3e - updated to 2.6.2 2008-09-09 08:34:50 +00:00
2ae509c750 - updated to 2.6.1 2008-08-28 21:38:18 +00:00
d68bba2d49 - updated to 2.5.1 for security fixes - BZ 444396 2008-04-28 09:15:17 +00:00
a94de7d214 - update to 2.3.3 for security fixes - BZ 431547 2008-02-09 20:20:48 +00:00
2e7ede6d52 - updated to 2.3.2 (bz 426431, Draft Information Disclosure) 2008-01-08 22:47:12 +00:00
73847310f2 - updated to 2.3.1 (bz 357731, wordpress XSS issue) 2007-10-30 09:08:02 +00:00
Toshio くらとみ
39e818fc18 Initialize branch EL-5 for wordpress 2007-10-29 17:57:41 +00:00
1d94be10b5 - updated to 2.2.3 (security release) 2007-09-11 16:45:21 +00:00
John Berninger
933c83d89a update to upstream 2.2.2 and license tag update 2007-08-29 14:54:42 +00:00
John Berninger
bb1dfc5077 update to 2.2.1 2007-07-04 22:22:09 +00:00
John Berninger
7008296f0c update to 2.1.3 final 2007-04-16 15:13:46 +00:00
John Berninger
9247f27815 update for bz 233703 2007-03-26 15:42:19 +00:00
John Berninger
92da5c1d0b update to 2.1.2 - bz 230825 2007-03-03 13:34:05 +00:00
John Berninger
6237923d48 bz 229991 update to 2.1.1 2007-02-27 16:08:16 +00:00
John Berninger
17871ed1ef update to v2.1 to fix multiple bz/vuln's 2007-02-01 02:45:58 +00:00
John Berninger
f38988bf6e Update to 2.0.5 to fix bz 220818 2006-12-27 16:05:20 +00:00
John Berninger
53afb9d753 Actually remove mysql-server dependency this time 2006-12-05 01:41:12 +00:00
John Berninger
c5e495b588 Fix for BZ 213985 2006-12-03 18:27:22 +00:00
John Berninger
f8e88b0452 Fix for BZ 213985 2006-12-03 18:09:18 +00:00
13 changed files with 736 additions and 87 deletions

67
.gitignore vendored
View file

@ -1,29 +1,38 @@
wordpress-3.0.1.tar.gz *spec~
/wordpress-3.0.2.tar.gz clog
/wordpress-3.0.3.tar.gz /wordpress-3.7.tar.gz
/wordpress-3.0.4.tar.gz /wordpress-3.7.1.tar.gz
/wordpress-3.1.tar.gz /wordpress-3.8.tar.gz
/wordpress-3.1.1.tar.gz /wordpress-3.8.1.tar.gz
/wordpress-3.1.2.tar.gz /wordpress-3.8.2.tar.gz
/wordpress-3.1.3.tar.gz /wordpress-3.8.3.tar.gz
/wordpress-3.2-RC1.zip /wordpress-3.9.tar.gz
/wordpress-3.2-RC3.zip /wordpress-3.9.1.tar.gz
/wordpress-3.2.tar.gz /wordpress-3.9.2.tar.gz
/wordpress-3.2.1.tar.gz /wordpress-4.0.tar.gz
/wordpress-3.3-beta2.tar.gz /wordpress-4.0.1.tar.gz
/wordpress-3.3-beta3.tar.gz /wordpress-4.1.tar.gz
/wordpress-3.3-beta4.tar.gz /wordpress-4.1.1.tar.gz
/wordpress-3.3-RC1.tar.gz /wordpress-4.1.2.tar.gz
/wordpress-3.3-RC2.tar.gz /wordpress-4.2.tar.gz
/wordpress-3.3.tar.gz /wordpress-4.2.1.tar.gz
/wordpress-3.3.1.tar.gz /wordpress-4.2.2.tar.gz
/wordpress-3.4-beta1.tar.gz /wordpress-4.2.3.tar.gz
/wordpress-3.4-beta2.tar.gz /wordpress-4.2.4.tar.gz
/wordpress-3.4-beta3.tar.gz /wordpress-4.3.tar.gz
/wordpress-3.4-beta4.tar.gz /wordpress-4.3.1.tar.gz
/wordpress-3.4-RC1.tar.gz /wordpress-4.4.tar.gz
/wordpress-3.4-RC2.tar.gz /wordpress-4.4.1.tar.gz
/wordpress-3.4-RC3.tar.gz /wordpress-4.4.2.tar.gz
/wordpress-3.4.tar.gz /wordpress-4.5-RC1.tar.gz
/wordpress-3.4.1.tar.gz /wordpress-4.5.tar.gz
/wordpress-3.4.2.tar.gz /wordpress-4.5.1.tar.gz
/wordpress-4.5.2.tar.gz
/wordpress-4.5.3.tar.gz
/wordpress-debian_patches_hello.patch
/wordpress-4.6.tar.gz
/wordpress-4.6.1.tar.gz
/wordpress-4.7.tar.gz
/wordpress-4.7.1.tar.gz
/wordpress-4.7.2.tar.gz
/wordpress-4.7.3.tar.gz

View file

@ -1,3 +1,5 @@
-------------------------------------------------------------------------------
Wordpress is a database driven blogging program designed to make it exceedingly Wordpress is a database driven blogging program designed to make it exceedingly
easy to publish an online blog, sometimes also called a weblog or journal. easy to publish an online blog, sometimes also called a weblog or journal.
@ -43,3 +45,42 @@ Once that's done and the database server and web server have been started,
open a web browser to http://localhost/wordpress/wp-admin/install.php and open a web browser to http://localhost/wordpress/wp-admin/install.php and
follow the instructions given to you on the pages you see to set up the follow the instructions given to you on the pages you see to set up the
database tables and begin publishing your blog. database tables and begin publishing your blog.
-------------------------------------------------------------------------------
Wordpress ships with Flash and Silverlight plugins for the 'plupload' file
uploader and the 'mediaelement' media player embedder. The idea is to try and
be able to provide a multi-file uploader and an embedded video player when
HTML5 is not available (or does not support the video format in question).
These plugins are provided as pre-built binaries and there is no mechanism
for building them from source during Wordpress compilation. As the inclusion
of pre-built binaries is against Fedora policy - see
https://fedoraproject.org/wiki/Packaging:Guidelines#No_inclusion_of_pre-built_binaries_or_libraries
- these plugins have been removed from the Fedora package. As a consequence:
a) any Wordpress element or plugin that uses the 'plupload' will only present
an HTML5-based multi-file uploader if HTML5 is supported by the user's browser
or an HMTL4-based single-file uploader in HTML5 is not supported. No Flash
or Silverlight-based multi-file uploader will be provided.
b) If you try to embed media into a Wordpress post using the [video] and
[audio] short tags, the media player will be visible if the reader is using
a browser that has HTML5 support for the media format in question; if not, the
'Download Media' link will be offered. No Flash or Silverlight-based player
element will be included.
-------------------------------------------------------------------------------
Optional dependencies:
You may wish to install the following packages:
php-pecl-imagick: optimize image transformation
php-pecl-ssh2: for file transfert using ssh
An opcode cache is also recommended:
php 5.5: php-opcache
php 5.4: php-pecl-zendopcache
php 5.3: php-pecl-apc
-------------------------------------------------------------------------------

View file

@ -1 +1 @@
dfc56cee27eec8fb79070f033ecd4b25 wordpress-3.4.2.tar.gz SHA512 (wordpress-4.7.3.tar.gz) = 071df65c3a43557faf351838a661a83e26d8de37c8633dc17a59d773cc91caef640a625b0719606df1fc563fd18af71ba1da22a5b6f345339e73761754484dc5

View file

@ -0,0 +1,32 @@
diff -up wordpress/wp-config.php.orig wordpress/wp-config.php
--- wordpress/wp-config.php.orig 2014-09-08 13:12:36.525908423 +0200
+++ wordpress/wp-config.php 2014-09-08 13:14:33.583402525 +0200
@@ -66,6 +66,19 @@ define('NONCE_SALT', 'put your uni
$table_prefix = 'wp_';
/**
+ * See http://make.wordpress.org/core/2013/10/25/the-definitive-guide-to-disabling-auto-updates-in-wordpress-3-7
+ */
+
+/* Disable all file change, as RPM base installation are read-only */
+define('DISALLOW_FILE_MODS', true);
+
+/* Disable automatic updater, in case you want to allow
+ above FILE_MODS for plugins, themes, ... */
+define('AUTOMATIC_UPDATER_DISABLED', true);
+
+/* Core update is always disabled, WP_AUTO_UPDATE_CORE value is ignore */
+
+/**
* For developers: WordPress debugging mode.
*
* Change this to true to enable the display of notices during development.
@@ -83,7 +96,7 @@ define('WP_DEBUG', false);
/** Absolute path to the WordPress directory. */
if ( !defined('ABSPATH') )
- define('ABSPATH', dirname(__FILE__) . '/');
+ define('ABSPATH', '/usr/share/wordpress');
/** Sets up WordPress vars and included files. */
require_once(ABSPATH . 'wp-settings.php');

View file

@ -0,0 +1,23 @@
diff -up wordpress/wp-includes/js/tinymce/plugins/media/plugin.js.rpm wordpress/wp-includes/js/tinymce/plugins/media/plugin.js
--- wordpress/wp-includes/js/tinymce/plugins/media/plugin.js.rpm 2014-08-22 01:53:18.000000000 +0200
+++ wordpress/wp-includes/js/tinymce/plugins/media/plugin.js 2014-09-08 13:10:15.717314458 +0200
@@ -46,10 +46,6 @@ tinymce.PluginManager.add('media', funct
return 'video/ogg';
}
- if (url.indexOf('.swf') != -1) {
- return 'application/x-shockwave-flash';
- }
-
return '';
}
@@ -247,7 +243,7 @@ tinymce.PluginManager.add('media', funct
data.source1mime = guessMime(data.source1);
data.source2mime = guessMime(data.source2);
data.poster = editor.convertURL(data.poster, "poster");
- data.flashPlayerUrl = editor.convertURL(url + '/moxieplayer.swf', "movie");
+ data.flashPlayerUrl = false;
tinymce.each(urlPatterns, function(pattern) {
var match, i, url;

View file

@ -0,0 +1,18 @@
--- wordpress/wp-includes/script-loader.php.orig 2015-12-09 16:51:44.740328793 +0100
+++ wordpress/wp-includes/script-loader.php 2015-12-09 16:53:00.870701835 +0100
@@ -300,15 +300,6 @@ function wp_default_scripts( &$scripts )
$scripts->add( 'wp-plupload', "/wp-includes/js/plupload/wp-plupload$suffix.js", array( 'plupload', 'jquery', 'json2', 'media-models' ), false, 1 );
did_action( 'init' ) && $scripts->localize( 'wp-plupload', 'pluploadL10n', $uploader_l10n );
- // keep 'swfupload' for back-compat.
- $scripts->add( 'swfupload', '/wp-includes/js/swfupload/swfupload.js', array(), '2201-20110113');
- $scripts->add( 'swfupload-swfobject', '/wp-includes/js/swfupload/plugins/swfupload.swfobject.js', array('swfupload', 'swfobject'), '2201a');
- $scripts->add( 'swfupload-queue', '/wp-includes/js/swfupload/plugins/swfupload.queue.js', array('swfupload'), '2201');
- $scripts->add( 'swfupload-speed', '/wp-includes/js/swfupload/plugins/swfupload.speed.js', array('swfupload'), '2201');
- $scripts->add( 'swfupload-all', false, array('swfupload', 'swfupload-swfobject', 'swfupload-queue'), '2201');
- $scripts->add( 'swfupload-handlers', "/wp-includes/js/swfupload/handlers$suffix.js", array('swfupload-all', 'jquery'), '2201-20110524');
- did_action( 'init' ) && $scripts->localize( 'swfupload-handlers', 'swfuploadL10n', $uploader_l10n );
-
$scripts->add( 'comment-reply', "/wp-includes/js/comment-reply$suffix.js", array(), false, 1 );
$scripts->add( 'json2', "/wp-includes/js/json2$suffix.js", array(), '2015-05-03' );

View file

@ -0,0 +1,20 @@
--- wordpress/wp-admin/includes/media.php.orig 2015-12-09 17:01:52.453306607 +0100
+++ wordpress/wp-admin/includes/media.php 2015-12-09 17:05:31.477379833 +0100
@@ -2989,7 +2989,7 @@ function wp_read_video_metadata( $file )
}
if ( ! class_exists( 'getID3', false ) ) {
- require( ABSPATH . WPINC . '/ID3/getid3.php' );
+ require( '/usr/share/php/getid3/getid3.php' );
}
$id3 = new getID3();
$data = $id3->analyze( $file );
@@ -3050,7 +3050,7 @@ function wp_read_audio_metadata( $file )
}
if ( ! class_exists( 'getID3', false ) ) {
- require( ABSPATH . WPINC . '/ID3/getid3.php' );
+ require( '/usr/share/php/getid3/getid3.php' );
}
$id3 = new getID3();
$data = $id3->analyze( $file );

View file

@ -0,0 +1,103 @@
diff -up wordpress/wp-admin/includes/admin-filters.php.rpm wordpress/wp-admin/includes/admin-filters.php
--- wordpress/wp-admin/includes/admin-filters.php.rpm 2016-09-03 07:50:51.812312381 +0200
+++ wordpress/wp-admin/includes/admin-filters.php 2016-09-03 07:51:39.070577518 +0200
@@ -106,7 +106,6 @@ add_action( 'profile_update', 'default_p
add_action( 'load-plugins.php', 'wp_plugin_update_rows', 20 ); // After wp_update_plugins() is called.
add_action( 'load-themes.php', 'wp_theme_update_rows', 20 ); // After wp_update_themes() is called.
-add_action( 'admin_notices', 'update_nag', 3 );
add_action( 'admin_notices', 'maintenance_nag', 10 );
add_filter( 'update_footer', 'core_update_footer' );
diff -up wordpress/wp-admin/includes/class-core-upgrader.php.rpm wordpress/wp-admin/includes/class-core-upgrader.php
--- wordpress/wp-admin/includes/class-core-upgrader.php.rpm 2016-09-03 07:59:45.832367671 +0200
+++ wordpress/wp-admin/includes/class-core-upgrader.php 2016-09-03 07:59:50.160392833 +0200
@@ -236,6 +236,9 @@ class Core_Upgrader extends WP_Upgrader
* @return bool True if we should update to the offered version, otherwise false.
*/
public static function should_update_to_version( $offered_ver ) {
+ // RPM: nether allow core update
+ return false;
+
include( ABSPATH . WPINC . '/version.php' ); // $wp_version; // x.y.z
$current_branch = implode( '.', array_slice( preg_split( '/[.-]/', $wp_version ), 0, 2 ) ); // x.y
diff -up wordpress/wp-admin/includes/class-wp-automatic-updater.php.rpm wordpress/wp-admin/includes/class-wp-automatic-updater.php
--- wordpress/wp-admin/includes/class-wp-automatic-updater.php.rpm 2016-09-03 08:00:15.810540773 +0200
+++ wordpress/wp-admin/includes/class-wp-automatic-updater.php 2016-09-03 08:00:28.915616106 +0200
@@ -31,7 +31,7 @@ class WP_Automatic_Updater {
*/
public function is_disabled() {
// Background updates are disabled if you don't want file changes.
- if ( defined( 'DISALLOW_FILE_MODS' ) && DISALLOW_FILE_MODS )
+ if ( !defined( 'DISALLOW_FILE_MODS' ) || DISALLOW_FILE_MODS )
return true;
if ( wp_installing() )
diff -up wordpress/wp-admin/includes/translation-install.php.rpm wordpress/wp-admin/includes/translation-install.php
--- wordpress/wp-admin/includes/translation-install.php.rpm 2016-05-22 20:01:30.000000000 +0200
+++ wordpress/wp-admin/includes/translation-install.php 2016-09-03 07:50:51.813312387 +0200
@@ -181,7 +181,7 @@ function wp_download_language_pack( $dow
return $download;
}
- if ( defined( 'DISALLOW_FILE_MODS' ) && DISALLOW_FILE_MODS ) {
+ if ( !defined( 'DISALLOW_FILE_MODS' ) || DISALLOW_FILE_MODS ) {
return false;
}
@@ -224,7 +224,7 @@ function wp_download_language_pack( $dow
* @return bool Returns true on success, false on failure.
*/
function wp_can_install_language_pack() {
- if ( defined( 'DISALLOW_FILE_MODS' ) && DISALLOW_FILE_MODS ) {
+ if ( !defined( 'DISALLOW_FILE_MODS' ) || DISALLOW_FILE_MODS ) {
return false;
}
diff -up wordpress/wp-admin/includes/update.php.rpm wordpress/wp-admin/includes/update.php
--- wordpress/wp-admin/includes/update.php.rpm 2016-08-10 21:06:31.000000000 +0200
+++ wordpress/wp-admin/includes/update.php 2016-09-03 07:50:51.812312381 +0200
@@ -271,7 +271,7 @@ function update_right_now_message() {
$cur = get_preferred_from_update_core();
if ( isset( $cur->response ) && $cur->response == 'upgrade' )
- $msg .= '<a href="' . network_admin_url( 'update-core.php' ) . '" class="button" aria-describedby="wp-version">' . sprintf( __( 'Update to %s' ), $cur->current ? $cur->current : __( 'Latest' ) ) . '</a> ';
+ $msg .= '';
}
/* translators: 1: version number, 2: theme name */
diff -up wordpress/wp-includes/capabilities.php.rpm wordpress/wp-includes/capabilities.php
--- wordpress/wp-includes/capabilities.php.rpm 2016-06-30 03:02:29.000000000 +0200
+++ wordpress/wp-includes/capabilities.php 2016-09-03 07:50:51.812312381 +0200
@@ -330,7 +330,7 @@ function map_meta_cap( $cap, $user_id )
// Disallow the file editors.
if ( defined( 'DISALLOW_FILE_EDIT' ) && DISALLOW_FILE_EDIT )
$caps[] = 'do_not_allow';
- elseif ( defined( 'DISALLOW_FILE_MODS' ) && DISALLOW_FILE_MODS )
+ elseif ( !defined( 'DISALLOW_FILE_MODS' ) || DISALLOW_FILE_MODS )
$caps[] = 'do_not_allow';
elseif ( is_multisite() && ! is_super_admin( $user_id ) )
$caps[] = 'do_not_allow';
@@ -348,7 +348,7 @@ function map_meta_cap( $cap, $user_id )
case 'update_core':
// Disallow anything that creates, deletes, or updates core, plugin, or theme files.
// Files in uploads are excepted.
- if ( defined( 'DISALLOW_FILE_MODS' ) && DISALLOW_FILE_MODS ) {
+ if ( !defined( 'DISALLOW_FILE_MODS' ) || DISALLOW_FILE_MODS ) {
$caps[] = 'do_not_allow';
} elseif ( is_multisite() && ! is_super_admin( $user_id ) ) {
$caps[] = 'do_not_allow';
diff -up wordpress/wp-includes/update.php.rpm wordpress/wp-includes/update.php
--- wordpress/wp-includes/update.php.rpm 2016-05-25 21:36:28.000000000 +0200
+++ wordpress/wp-includes/update.php 2016-09-03 07:50:51.813312387 +0200
@@ -653,9 +653,6 @@ function _maybe_update_themes() {
* @since 3.1.0
*/
function wp_schedule_update_checks() {
- if ( ! wp_next_scheduled( 'wp_version_check' ) && ! wp_installing() )
- wp_schedule_event(time(), 'twicedaily', 'wp_version_check');
-
if ( ! wp_next_scheduled( 'wp_update_plugins' ) && ! wp_installing() )
wp_schedule_event(time(), 'twicedaily', 'wp_update_plugins');

View file

@ -1,12 +0,0 @@
diff -up wordpress/wp-includes/kses.php.FSFaddr wordpress/wp-includes/kses.php
--- wordpress/wp-includes/kses.php.FSFaddr 2011-05-25 23:54:34.347025847 +0200
+++ wordpress/wp-includes/kses.php 2011-05-25 23:56:18.403727954 +0200
@@ -15,7 +15,7 @@
*
* You should have received a copy of the GNU General Public License along
* with this program; if not, write to the Free Software Foundation, Inc.,
- * 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA or visit
+ * 51 Franklin St, Fifth Floor, Boston, MA 02110-1301, USA
* http://www.gnu.org/licenses/gpl.html
*
* [kses strips evil scripts!]

View file

@ -1,9 +1,9 @@
--- wordpress/wp-content/plugins/hello.php~ 2010-11-10 06:43:04.000000000 -0600 --- wordpress/wp-content/plugins/hello.php 2013-05-22 14:08:40.000000000 -0700
+++ wordpress/wp-content/plugins/hello.php 2011-02-23 10:10:52.152777012 -0600 +++ wordpress/wp-content/plugins/hello.php.new 2013-08-22 23:46:04.594788007 -0700
@@ -6,42 +6,26 @@ @@ -6,42 +6,26 @@
/* /*
Plugin Name: Hello Dolly Plugin Name: Hello Dolly
Plugin URI: http://wordpress.org/extend/plugins/hello-dolly/ Plugin URI: http://wordpress.org/plugins/hello-dolly/
-Description: This is not just a plugin, it symbolizes the hope and enthusiasm of an entire generation summed up in two words sung most famously by Louis Armstrong: Hello, Dolly. When activated you will randomly see a lyric from <cite>Hello, Dolly</cite> in the upper right of your admin screen on every page. -Description: This is not just a plugin, it symbolizes the hope and enthusiasm of an entire generation summed up in two words sung most famously by Louis Armstrong: Hello, Dolly. When activated you will randomly see a lyric from <cite>Hello, Dolly</cite> in the upper right of your admin screen on every page.
+Description: This is not just a plugin, it symbolizes the hope and enthusiasm of an entire generation summed up in two words sung most famously by Richard M. Stallman: Free Software. When activated you will randomly see a lyric from the <cite>Free Software Song</cite> in the upper right of your admin screen on every page. +Description: This is not just a plugin, it symbolizes the hope and enthusiasm of an entire generation summed up in two words sung most famously by Richard M. Stallman: Free Software. When activated you will randomly see a lyric from the <cite>Free Software Song</cite> in the upper right of your admin screen on every page.
Author: Matt Mullenweg Author: Matt Mullenweg

View file

@ -1,5 +1,35 @@
Alias /wordpress /usr/share/wordpress Alias /wordpress /usr/share/wordpress
# Access is only allowed via local access
# Change this once configured
<Directory /usr/share/wordpress> <Directory /usr/share/wordpress>
AllowOverride Options AllowOverride Options
<IfModule mod_authz_core.c>
# Apache 2.4
Require local
</IfModule>
<IfModule !mod_authz_core.c>
# Apache 2.2
Order Deny,Allow
Deny from All
Allow from 127.0.0.1
Allow from ::1
</IfModule>
</Directory>
<Directory /usr/share/wordpress/wp-content/uploads>
# Deny access to any php file in the uploads directory
<FilesMatch "\.(php)$">
Order Deny,Allow
Deny from all
</FilesMatch>
</Directory>
<Directory /usr/share/wordpress/wp-content/plugins/akismet>
# Deny access to any php file in the akismet directory
<FilesMatch "\.(php|txt)$">
Order Deny,Allow
Deny from all
</FilesMatch>
</Directory> </Directory>

35
wordpress-nginx-conf Normal file
View file

@ -0,0 +1,35 @@
# Wordpress
location = /wordpress {
alias /usr/share/wordpress/;
}
location /wordpress/ {
root /usr/share;
index index.php;
location ~ ^/wordpress/wp-content/uploads/(.+)\.php$ {
# Deny access to any php file in the uploads directory
deny all;
}
location ~ ^/wordpress/wp-content/plugins/akismet/(.+)\.php$ {
# Deny access to any php file in the akismet directory
deny all;
}
# Access is only allowed via local access
# Change this once configured
location ~ ^/wordpress/(.+\.php)$ {
allow 127.0.0.1;
allow ::1;
deny all;
try_files $uri =404;
fastcgi_intercept_errors on;
include fastcgi_params;
fastcgi_param SERVER_NAME $host;
fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name;
fastcgi_pass php-fpm;
}
}

View file

@ -1,59 +1,222 @@
# Fedora spec file for wordpress
#
# License: MIT
# http://opensource.org/licenses/MIT
#
# Please preserve changelog entries
#
%{!?_pkgdocdir: %global _pkgdocdir %{_docdir}/%{name}-%{version}}
%global wp_content %{_datadir}/wordpress/wp-content %global wp_content %{_datadir}/wordpress/wp-content
#%#global betatag -RC3
Summary: Blog tool and publishing platform %if 0%{?fedora} >= 21
URL: http://www.wordpress.org %global with_nginx 1
Name: wordpress %else
Version: 3.4.2 %global with_nginx 0
Group: Applications/Publishing %endif
#Release: 0.2.%{betatag}%{?dist}
Release: 2%{?dist} # https://bugzilla.redhat.com/1147817 php53-getid3 review
License: GPLv2 %if 0%{?fedora} >= 17 || 0%{?rhel} >= 6
Source0: http://wordpress.org/%{name}-%{version}%{?betatag}.tar.gz %global with_getid3 1
Source1: wordpress-httpd-conf %else
Source2: README.fedora.wordpress %global with_getid3 0
Source3: README.fedora.wordpress-mu %endif
#global prever RC1
Summary: Blog tool and publishing platform
URL: http://www.wordpress.org
Name: wordpress
Version: 4.7.3
Group: Applications/Publishing
Release: 1%{?dist}
License: GPLv2
Source0: http://wordpress.org/%{name}-%{version}%{?prever:-%{prever}}.tar.gz
Source1: wordpress-httpd-conf
Source2: README.fedora.wordpress
Source3: README.fedora.wordpress-mu
Source4: wordpress-nginx-conf
# Patch out copyrighted text of Hello, Dolly # Patch out copyrighted text of Hello, Dolly
# (and replace it with Free Software Song) # (and replace it with Free Software Song)
Patch0: wordpress-debian_patches_hello.patch Patch0: wordpress-debian_patches_hello.patch
# Move wp-content to /var/www/wordpress/ # Move wp-content to /var/www/wordpress/
# This patch doesnt work well, see bugzilla.redhat.com/522897
Patch1: wordpress-move-wp-content.patch Patch1: wordpress-move-wp-content.patch
# Drop swfupload: not built from source, not reasonably possible to do
Patch2: wordpress-4.4-no_swfupload.patch
# Adjust tinymce's media plugin not to use its SWF plugin. This changes
# 'p.getParam("flash_video_player_url",u.convertUrl(u.url+"/moxieplayer.swf"))'
# to 'false'
Patch3: wordpress-4.0-tinymce_noflash.patch
# RPM configuration:
# Path to installation
# Disable auto-updater
Patch5: wordpress-4.0-config.patch
# RPM are readonly
# disable version check and updated
# change DISALLOW_FILE_MODS default value to true
# ignore WP_AUTO_UPDATE_CORE (always false)
Patch6: wordpress-4.6-noupdate.patch
# Use system libraries
Patch7: wordpress-4.4-systemlibs.patch
BuildRoot: %{_tmppath}/%{name}-%{version}-%{release}-root-%(%{__id_u} -n) BuildRoot: %{_tmppath}/%{name}-%{version}-%{release}-root-%(%{__id_u} -n)
Requires: php >= 5.2.4, webserver, php-mysql, php-gettext, php-simplepie BuildArch: noarch
%if 0%{?rhel} == 5
Requires: php53 >= 5.2.4
Requires: php53-simplepie >= 1.3.1
%if %{with_getid3}
Requires: php53-getid3
%endif
Requires: php53-mysql
%else
%if %{with_nginx}
Requires: webserver
Requires: php(httpd)
Suggests: httpd
# For directory ownership
Requires: httpd-filesystem
Requires: nginx-filesystem
%else
Requires: php >= 5.2.4
%endif
Requires: php-simplepie >= 1.3.1
%if %{with_getid3}
Requires: php-getid3
%endif
Requires: php-ctype
Requires: php-filter
Requires: php-mysqli
%endif
# From phpcompatinfo report for version 4.5.3
Requires: php-curl
Requires: php-date
Requires: php-dom
Requires: php-exif
Requires: php-fileinfo
Requires: php-ftp
Requires: php-gd
Requires: php-gettext
Requires: php-hash
Requires: php-iconv
Requires: php-json
Requires: php-libxml
Requires: php-mbstring
Requires: php-openssl
Requires: php-pcre
Requires: php-posix
Requires: php-simplexml
Requires: php-sockets
Requires: php-spl
Requires: php-tokenizer
Requires: php-xml
Requires: php-zip
Requires: php-zlib
# Unbundled libraries
Requires: php-PHPMailer
Requires: httpd
# ca-certificates (excepted on EL-5)
Requires: %{_sysconfdir}/pki/tls/certs/ca-bundle.crt
Provides: wordpress-mu = %{version}-%{release} Provides: wordpress-mu = %{version}-%{release}
Obsoletes: wordpress-mu < 2.9.3 Obsoletes: wordpress-mu < 2.9.3
BuildArch: noarch
%description %description
Wordpress is an online publishing / weblog package that makes it very easy, Wordpress is an online publishing / weblog package that makes it very easy,
almost trivial, to get information out to people on the web. almost trivial, to get information out to people on the web.
Important information in %{_pkgdocdir}/README.fedora
%prep %prep
%setup -q -n wordpress %setup -q -n wordpress
# Drop pre-compiled binary lumps: Flash and Silverlight
# This means that Flash video fallbacks in Wordpress' media support
# and the tinymce plugin, the plupload Flash and Silverlight
# uploaders, and swfupload are not available.
# To re-introduce these they would have to be built from the
# ActionScript source as part of this package build, they cannot be
# shipped pre-compiled. Removing plupload.flash.js and
# plupload.silverlight.js causes plupload only to try and use the html4
# or html5 uploaders; if you just wipe the binaries but leave the
# .js files, it will try and use the Flash or Silverlight uploaders
# and draw a non-functional button. - AdamW, 2013/08
# https://fedoraproject.org/wiki/Packaging:Guidelines#No_inclusion_of_pre-built_binaries_or_libraries
rm wp-includes/js/mediaelement/silverlightmediaelement.xap
rm wp-includes/js/mediaelement/flashmediaelement.swf
rm wp-includes/js/tinymce/plugins/media/moxieplayer.swf
rm wp-includes/js/plupload/plupload.silverlight.xap
rm wp-includes/js/plupload/plupload.flash.swf
# swfupload can just die in its entirety
rm -rf wp-includes/js/swfupload
# remove .htaccess, protected by httpd config file
rm wp-content/plugins/akismet/.htaccess
%patch0 -p1 -b .dolly %patch0 -p1 -b .dolly
#%patch1 -p1 -b .rhbz522897 #patch1 -p1 -b .rhbz522897
%patch2 -p1
%patch3 -p1
# Adjust mediaelement not to use its SWF and Silverlight plugins. This
# changes 'plugins:["flash,"silverlight","youtube","vimeo"]' to
# 'plugins:["youtube","vimeo"]'
sed -s 's/"flash","silverlight",//' -i wp-includes/js/mediaelement/mediaelement-and-player.min.js
%if %{with_getid3}
%patch7 -p1
%endif
# We patch a .js file, used patched file instead of unpatch minified one
ln -sf plugin.js wp-includes/js/tinymce/plugins/media/plugin.min.js
# Re-Generated the archive
arc=wp-includes/js/tinymce/wp-tinymce.js
gunzip -dc $arc.gz | \
grep "^// Source" | \
while read a b c
do
if [ -f $c ]; then
echo -e "\n$a $b $c"
cat $c
else
exit 1
fi
done >$arc
gzip --force $arc
ls -l $arc.gz
# Create RPM configuration
sed -e 's/\r//' wp-config-sample.php >wp-config.php
%patch5 -p1
%patch6 -p1
# disable wp_version_check, updates are always installed via rpm
sed -i -e "s,\(.*\)'wp_version_check'\(.*\),#\1'wp_version_check'\2,g" \
wp-includes/update.php
# disable update_nag() function
sed -i -e "s,\(.*\)'update_nag'\(.*\),#\1'update_nag'\2,g; \
s,\(.*\)\$msg .=\(.*\),\1\$msg .= '';,g;" \
wp-admin/includes/update.php
# fix file encoding # fix file encoding
sed -i -e 's/\r//' license.txt sed -i -e 's/\r//' license.txt
%build %build
%install %install
mkdir -p ${RPM_BUILD_ROOT}%{_datadir}/wordpress # Apache configuration
mkdir -p ${RPM_BUILD_ROOT}%{_sysconfdir}/wordpress
install -m 0644 -D -p %{SOURCE1} ${RPM_BUILD_ROOT}%{_sysconfdir}/httpd/conf.d/wordpress.conf install -m 0644 -D -p %{SOURCE1} ${RPM_BUILD_ROOT}%{_sysconfdir}/httpd/conf.d/wordpress.conf
%if %{with_nginx}
install -m 0644 -D -p %{SOURCE4} ${RPM_BUILD_ROOT}%{_sysconfdir}/nginx/default.d/wordpress.conf
%endif
# Application
mkdir -p ${RPM_BUILD_ROOT}%{_datadir}/wordpress
cp -pr * ${RPM_BUILD_ROOT}%{_datadir}/wordpress cp -pr * ${RPM_BUILD_ROOT}%{_datadir}/wordpress
cat wp-config-sample.php | sed -e "s|dirname(__FILE__).'/'|'/usr/share/wordpress/'|g" > \
${RPM_BUILD_ROOT}%{_sysconfdir}/wordpress/wp-config.php # Configuration
install -m 0644 -D wp-config.php ${RPM_BUILD_ROOT}%{_sysconfdir}/wordpress/wp-config.php
/bin/ln -sf ../../../etc/wordpress/wp-config.php ${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-config.php /bin/ln -sf ../../../etc/wordpress/wp-config.php ${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-config.php
/bin/cp %{SOURCE2} ./README.fedora /bin/cp %{SOURCE2} ./README.fedora
/bin/cp %{SOURCE3} ./README.fedora-multiuser /bin/cp %{SOURCE3} ./README.fedora-multiuser
@ -65,15 +228,36 @@ find ${RPM_BUILD_ROOT} -type f -empty -exec rm -vf {} \;
# These are docs, remove them from here, docify them later # These are docs, remove them from here, docify them later
rm -f ${RPM_BUILD_ROOT}%{_datadir}/wordpress/{license.txt,readme.html} rm -f ${RPM_BUILD_ROOT}%{_datadir}/wordpress/{license.txt,readme.html}
# Remove bundled php-gettext and link to system copy
rm -f ${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-includes/gettext.php
# Remove bundled php-simplepie and link to system copy # Remove bundled php-simplepie and link to system copy
rm -f ${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-includes/class-simplepie.php rm ${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-includes/class-simplepie.php
ln -sf /usr/share/php/php-simplepie/simplepie.inc ${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-includes/class-simplepie.php rm -r ${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-includes/SimplePie
%if 0%{?rhel} == 5
ln -s /usr/share/php/php53-simplepie/autoloader.php \
%else
ln -s /usr/share/php/php-simplepie/autoloader.php \
%endif
${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-includes/class-simplepie.php
# Remove bundled PHPMailer and link to system one
# Note POP3 is not from PHPMailer but from SquirrelMail
for fic in phpmailer smtp; do
rm ${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-includes/class-$fic.php
ln -sf /usr/share/php/PHPMailer/class.$fic.php \
${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-includes/class-$fic.php
done
%if %{with_getid3}
# Remove bundled php-getid3
rm -r ${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-includes/ID3
%endif
# Remove bundled ca-bundle.crt
rm ${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-includes/certificates/ca-bundle.crt
ln -s %{_sysconfdir}/pki/tls/certs/ca-bundle.crt \
${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-includes/certificates/ca-bundle.crt
# Remove backup copies of patches # Remove backup copies of patches
find ${RPM_BUILD_ROOT} \( -name \*.dolly -o -name \*.rhbz522897 -o -name \*.FSFaddr \) \ find ${RPM_BUILD_ROOT} \( -name \*.dolly -o -name \*.rhbz522897 -o -name \*.orig \) \
-print -delete -print -delete
## Move wp-content directory to /var/www location ## Move wp-content directory to /var/www location
@ -89,34 +273,200 @@ find ${RPM_BUILD_ROOT} \( -name \*.dolly -o -name \*.rhbz522897 -o -name \*.FSFa
#/sbin/restorecon -R %{_localstatedir}/www/wordpress/ #/sbin/restorecon -R %{_localstatedir}/www/wordpress/
#fi #fi
%clean %clean
rm -rf ${RPM_BUILD_ROOT} rm -rf ${RPM_BUILD_ROOT}
%files %files
%defattr(-,root,root,-) %defattr(-,root,root,-)
%config(noreplace) %{_sysconfdir}/httpd/conf.d/wordpress.conf %config(noreplace) %{_sysconfdir}/httpd/conf.d/wordpress.conf
%if %{with_nginx}
%config(noreplace) %{_sysconfdir}/nginx/default.d/wordpress.conf
%endif
%dir %{_datadir}/wordpress %dir %{_datadir}/wordpress
%{_datadir}/wordpress/wp-admin %{_datadir}/wordpress/wp-admin
%{_datadir}/wordpress/wp-includes %{_datadir}/wordpress/wp-includes
%{_datadir}/wordpress/index.php %{_datadir}/wordpress/index.php
%dir %{wp_content}/ %dir %{wp_content}/
%{wp_content}/index.php %{wp_content}/index.php
%dir %attr(0775,apache,ftp) %{wp_content}/plugins %dir %attr(2775,apache,ftp) %{wp_content}/plugins
%dir %attr(0775,apache,ftp) %{wp_content}/themes %dir %attr(2775,apache,ftp) %{wp_content}/themes
%dir %attr(0775,apache,ftp) %{wp_content}/upgrade %dir %attr(2775,apache,ftp) %{wp_content}/upgrade
%dir %attr(0775,apache,ftp) %{wp_content}/uploads %dir %attr(2775,apache,ftp) %{wp_content}/uploads
%{wp_content}/plugins/* %{wp_content}/plugins/*
%{wp_content}/themes/* %{wp_content}/themes/*
%doc license.txt %{!?_licensedir:%global license %%doc}
%license license.txt
%doc readme.html %doc readme.html
%doc README.fedora %doc README.fedora
%doc README.fedora-multiuser %doc README.fedora-multiuser
%{_datadir}/wordpress/wp-*.php %{_datadir}/wordpress/wp-*.php
%config(noreplace) %{_sysconfdir}/wordpress/wp-config.php %attr(750,root,apache) %dir %{_sysconfdir}/wordpress
%attr(640,root,apache) %config(noreplace) %{_sysconfdir}/wordpress/wp-config.php
%{_datadir}/wordpress/xmlrpc.php %{_datadir}/wordpress/xmlrpc.php
%dir %{_sysconfdir}/wordpress
%changelog %changelog
* Tue Mar 7 2017 Remi Collet <remi@fedoraproject.org> - 4.7.3-1
- WordPress 4.7.3 Security and Maintenance Release
* Fri Jan 27 2017 Remi Collet <remi@fedoraproject.org> - 4.7.2-1
- WordPress 4.7.2 Security Release
* Thu Jan 12 2017 Remi Collet <remi@fedoraproject.org> - 4.7.1-1
- WordPress 4.7.1 Security and Maintenance Release
* Wed Dec 7 2016 Remi Collet <remi@fedoraproject.org> - 4.7.0-1
- WordPress 4.7 “Vaughan”
* Thu Sep 8 2016 Remi Collet <remi@fedoraproject.org> - 4.6.1-1
- WordPress 4.6.1 Security and Maintenance Release
* Sat Sep 3 2016 Remi Collet <remi@fedoraproject.org> - 4.6-2
- WordPress 4.6 “Pepper”
- fix directory permissions #1305687
* Wed Jun 22 2016 Remi Collet <remi@fedoraproject.org> - 4.5.3-1
- WordPress 4.5.3 Maintenance and Security Release
- never bundle ca-bundle.crt (EL-5)
- provide nginx configuration (fedora)
- drop mandatory dependency on httpd (suggested) #1336091
- protect php files in uploads directory
* Tue May 10 2016 Remi Collet <remi@fedoraproject.org> - 4.5.2-1
- WordPress 4.5.2 Security Release
* Wed Apr 27 2016 Remi Collet <remi@fedoraproject.org> - 4.5.1-1
- WordPress 4.5.1 Maintenance Release
* Wed Apr 13 2016 Remi Collet <remi@fedoraproject.org> - 4.5-1
- WordPress 4.5 “Coleman”
* Wed Feb 3 2016 Remi Collet <remi@fedoraproject.org> - 4.4.2-1
- WordPress 4.4.2 Security and Maintenance Release
* Thu Jan 7 2016 Remi Collet <remi@fedoraproject.org> - 4.4.1-1
- WordPress 4.4.1 Security and Maintenance Release
* Wed Dec 9 2015 Remi Collet <remi@fedoraproject.org> - 4.4-1
- WordPress 4.4 “Clifford”
* Wed Sep 16 2015 Remi Collet <remi@fedoraproject.org> - 4.3.1-1
- WordPress 4.3.1 Security and Maintenance Release
* Wed Aug 26 2015 Remi Collet <remi@fedoraproject.org> - 4.3-1
- WordPress 4.3 “Billie”
* Tue Aug 4 2015 Remi Collet <remi@fedoraproject.org> - 4.2.4-1
- WordPress 4.2.4 Security and Maintenance Release
* Fri Jul 24 2015 Remi Collet <remi@fedoraproject.org> - 4.2.3-1
- WordPress 4.2.3 Security and Maintenance Release
* Thu May 7 2015 Remi Collet <remi@fedoraproject.org> - 4.2.2-1
- WordPress 4.2.2 Security and Maintenance Release
* Tue Apr 28 2015 Remi Collet <remi@fedoraproject.org> - 4.2.1-1
- WordPress 4.2.1 Security Release
- WordPress 4.2 “Powell”
* Fri Apr 24 2015 Remi Collet <remi@fedoraproject.org> - 4.1.3-1
- WordPress 4.1.3 Maintenance Release
* Thu Apr 23 2015 Remi Collet <remi@fedoraproject.org> - 4.1.2-1
- WordPress 4.1.2 Security Release
* Thu Feb 19 2015 Remi Collet <remi@fedoraproject.org> - 4.1.1-1
- WordPress 4.1.1 Maintenance Release
* Mon Dec 22 2014 Remi Collet <remi@fedoraproject.org> - 4.1-1
- WordPress 4.1 “Dinah”
* Fri Nov 21 2014 Remi Collet <remi@fedoraproject.org> - 4.0.1-1
- WordPress 4.0.1 Security Release
- use system php-getid3 when available #1145574
* Mon Sep 8 2014 Remi Collet <remi@fedoraproject.org> - 4.0-1
- WordPress 4.0 “Benny”
* Fri Aug 8 2014 Remi Collet <remi@fedoraproject.org> - 3.9.2-3
- config dir only readable by apache group, better fix for #1124582
- fix license handling
* Thu Aug 7 2014 Remi Collet <remi@fedoraproject.org> - 3.9.2-2
- update to 3.9.2 Security Release #1127547
- config file only readable by apache user (httpd or php-fpm) #1124582
* Fri May 9 2014 Remi Collet <remi@fedoraproject.org> - 3.9.1-1
- update to 3.9.1 Maintenance Release
* Wed May 7 2014 Remi Collet <remi@fedoraproject.org> - 3.9-1
- update to 3.9 “Smith”
* Tue Apr 15 2014 Remi Collet <remi@fedoraproject.org> - 3.8.3-1
- update to 3.8.3 Maintenance Release
http://wordpress.org/news/2014/04/wordpress-3-8-3/
* Wed Apr 9 2014 Remi Collet <remi@fedoraproject.org> - 3.8.2-1
- update to 3.8.2 Security Release
- fix privilege escalation issue CVE-2014-0165
- fix authentication bypass issue CVE-2014-0166
* Sat Jan 25 2014 Remi Collet <remi@fedoraproject.org> - 3.8.1-3
- ignore WP_AUTO_UPDATE_CORE (always false)
* Fri Jan 24 2014 Remi Collet <remi@fedoraproject.org> - 3.8.1-2
- comment provided configuration about auto-updater
- disable auto-updater on default configuration #1057521
- switch some sed to patch (more robust)
* Thu Jan 23 2014 Adam Williamson <awilliam@redhat.com> - 3.8.1-1
- new upstream release 3.8.1 (bugfixes)
* Mon Dec 16 2013 Remi Collet <rcollet@redhat.com> - 3.8-1
- update to 3.8 “Parker” #1043104
- link to README.fedora in package description
- add note about optional packages #1037516
- add php dependencies: ereg, ftp, gd, xml
- del php dependencies: pdo, reflection
* Wed Oct 30 2013 Remi Collet <rcollet@redhat.com> - 3.7.1-1
- update to 3.7.1 (bugfixes)
* Fri Oct 25 2013 Remi Collet <rcollet@redhat.com> - 3.7-1
- update to 3.7
- requires ca-certificates for ca-bundle.crt
- drop pre-compiled Flash and Silverlight binaries - #1000267
* Mon Jun 24 2013 Remi Collet <rcollet@redhat.com> - 3.5.2-1
- version 3.5.2, various bug and security fixes:
CVE-2013-2173 CVE-2013-2199 CVE-2013-2200 CVE-2013-2201
CVE-2013-2202 CVE-2013-2203 CVE-2013-2204
* Tue Feb 12 2013 Remi Collet <rcollet@redhat.com> - 3.5.1-2
- provides POP3 class #905867
POP3 is not from PHPMailer, but from SquirrelMail
* Wed Jan 30 2013 Remi Collet <rcollet@redhat.com> - 3.5.1-1.1
- fix simplepie links (for all branches)
* Wed Jan 30 2013 Remi Collet <rcollet@redhat.com> - 3.5.1-1
- version 3.5.1, various bug and security fixes:
CVE-2013-0235, CVE-2013-0236 and CVE-2013-0237
- drop -f option from rm to break build if
upstream archive content change
- protect akismet content (from upstream .htaccess)
* Wed Jan 2 2013 Remi Collet <rcollet@redhat.com> - 3.5-3
- fix links to system PHPMailer library
* Wed Dec 12 2012 Matěj Cepl <mcepl@redhat.com> - 3.5-1
- New upstream release.
* Mon Oct 29 2012 Remi Collet <rcollet@redhat.com> - 3.5-0.3.beta2
- use system PHPMailer
- requires needed php extensions
* Thu Sep 06 2012 Matej Cepl <mcepl@redhat.com> - 3.4.2-2 * Thu Sep 06 2012 Matej Cepl <mcepl@redhat.com> - 3.4.2-2
- Upstream security update. - Upstream security update.