¿ªÔÆÌåÓý

Groups.io site updates #changelog


 

Hi all,

This change log for the last three weeks:


Feel free to reply to this topic if you'd like to comment on the
changes. Or better yet, if you expect a lot of discussion start a new
topic (or rejoin an existing one) about a specific change.


* Upgraded and rebooted all instances with new kernel patched to
fix the Meltdown bug.
That security bug has been much in the news this week. It isn't often that a security flaw is found that affects web services big and small as well as personal computing devices. My Win 10 machines, home and work, have taken the patch for it.

* Removed List-Post headers from emails because of Thunderbird.
This is the one I focused on three weeks ago. Since apparently only the Thunderbird email interface did anything with this header, and what it did I think was the wrong thing, I'm just as happy it is gone.

However that does leave Thunderbird users without a one-click way to reply off-list in groups that have the Reply-To set for group replies. Instead a copy/paste of the sender's address is required - plus manual fix-up if the sender is from one of the DMARC'd email services, such as Yahoo mail.


Comments about these others are also welcome:


* SECURITY: Fixed issue where an attacker could create an account
with someone else's email address (assuming it didn't exist) and get
it confirmed.
* BUGFIX: Very long text attachments could cause the search indexer
to ignore some messages during indexing.
* BUGFIX: When editing a markdown formatted message, the markdown
formatting was not preserved.
* BUGFIX: In the activity log, the wrong person was displayed for
banned/unbanned/removed records.
* SECURITY: Added X-Frame-Options HTTP header to prevent
clickjacking.
* BUGFIX: Some bounces to enterprise groups were not being processed
correctly.
* INTERNAL: Upgrade pgx package to fix Postgres replication timeout
bug.

Please call out any you find significant.

Shal