Closed (fixed)
Project:
Panopoly
Version:
7.x-1.x-dev
Component:
Core
Priority:
Normal
Category:
Task
Assigned:
Unassigned
Reporter:
Created:
15 Oct 2014 at 16:05 UTC
Updated:
3 Nov 2014 at 15:34 UTC
Jump to comment: Most recent
Here's the security advisory:
https://www.drupal.org/SA-CORE-2014-005
We'll do a release ASAP after this is fixed!
Comments
Comment #2
dsnopekCommitted! Starting on release now..
Comment #3
greggmarshallRather than open a new issue for this question, I'll ask it here for Google searchers.
We have inherited some sites that use Panopoly that apparently mis-use Panels/Views so updates have been problematic.
Given the seriousness of the exploit fixed in 7.32, can core be updated independently? I don't see any core patches in the .make files in the profile.
Thanks for your distribution and help.
Comment #4
dsnopekYeah, you can update core independently or use the patch which will work on any Drupal 7 version.
Comment #5
greggmarshallPerfect, thanks for the quick reply
Comment #6
StuddMan commenteddsnopek do you have an ETA on when you guys can get 7.x-1.13 on Pantheon?
Comment #7
dsnopekAck, sorry, I simply forgot to push the changes to the Pantheon repo! It's pushed now.
FYI, this issue pertains to Panopoly 1.12 - the issue that would be more apropos to 1.13 is #2357515: panopoly_update_7102() breaks if block module is already enabled