Skip to content
This repository was archived by the owner on Nov 19, 2024. It is now read-only.

Commit 889fc97

Browse files
committed
added hotfix information to the security notes; edited
1 parent 3ba327f commit 889fc97

File tree

2 files changed

+23
-19
lines changed

2 files changed

+23
-19
lines changed

src/guides/v2.3/release-notes/2-3-7-p2.md

Lines changed: 12 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@ group: release-notes
33
title: Adobe Commerce 2.3.7-p2 Release Notes
44
---
55

6-
{{ site.data.var.ee }} 2.3.7-p2 is a security-only release that provides security fixes that enhance your {{ site.data.var.ee }} 2.3.7 or {{ site.data.var.ce }} 2.3.7 deployment. Merchants can now install time-sensitive security fixes without applying the hundreds of functional fixes and enhancements that a full quarterly release provides. Patch 2.3.7-p2 is a security-only patch that provides fixes for vulnerabilities that have been identified in our previous quarterly release, {{ site.data.var.ee }} 2.3.7-p1.
6+
{{ site.data.var.ee }} 2.3.7-p2 is a security release that provides security fixes that enhance your {{ site.data.var.ee }} 2.3.7 or {{ site.data.var.ce }} 2.3.7 deployment. It provides fixes for vulnerabilities that have been identified in our previous quarterly release, {{ site.data.var.ee }} 2.3.7-p1.
77

88
{:.bs-callout-info}
99
PHP 7.3 reaches end of support in December 2021, and {{ site.data.var.ee }} 2.3.x and {{ site.data.var.ce }} 2.3.x reaches end of support in April 2022. **We strongly recommend planning your upgrade now to {{ site.data.var.ee }} 2.4.x or {{ site.data.var.ce }} 2.4.x deployment to help maintain PCI compliance**.
@@ -13,19 +13,20 @@ Quarterly releases may contain backward-incompatible changes (BIC). To review mi
1313

1414
## What's in this release?
1515

16-
Six security fixes and several security enhancements are included in this security patch. Only one of these six fixes is an externally reported vulnerability. Fixes for externally reported vulnerabilities are documented in the [Adobe Security Bulletin](https://helpx.adobe.com/security/products/magento/apsb21-86.html).
16+
This security patch includes:
1717

18-
Security-only patches typically include all hotfixes that have been released for the preceding complete release. This release incorporates the two hotfixes that have been released for {{ site.data.var.ee }} 2.3.7-p1 and {{ site.data.var.ce }} 2.3.7-p1. See [Adobe Commerce 2.3.7-p1 Release Notes]({{page.baseurl}}/release-notes/2-3-7-p1.html) for information about these hotfixes.
18+
* all hotfixes that have been released for the preceding complete release
19+
* security enhancements/highlights
20+
* six security bug fixes. Only one of these six fixes is an externally reported vulnerability. Fixes for externally reported vulnerabilities are documented in the [Adobe Security Bulletin](https://helpx.adobe.com/security/products/magento/apsb21-86.html).
21+
* bug fixes for the [Klarna](https://docs.magento.com/user-guide/v2.3/payment/klarna.html) and [Vertex](https://docs.magento.com/user-guide/v2.3/tax/vertex.html) vendor-developed extensions.
1922

20-
This release also includes bug fixes for the [Klarna](https://docs.magento.com/user-guide/v2.3/payment/klarna.html) and [Vertex](https://docs.magento.com/user-guide/v2.3/tax/vertex.html) vendor-developed extensions.
23+
### Hotfixes included in Adobe Commerce 2.3.7-p2
2124

22-
### Resolution of known issues in Adobe Commerce 2.3.7-p1
25+
This release includes the following hotfixes, which address known issues first identified in {{ site.data.var.ee }} 2.3.7-p1:
2326

24-
This release includes fixes for the following known issues, which were first identified in {{ site.data.var.ee }} 2.3.7-p1:
27+
* patch `AC-384__Fix_Incompatible_PHP_Method__2.3.7-p1_ce.patch to address PHP fatal error on upgrade`. See the [Adobe Commerce upgrade 2.4.3, 2.3.7-p1 PHP Fatal error Hotfix](https://support.magento.com/hc/en-us/articles/4408021533069-Adobe-Commerce-upgrade-2-4-3-2-3-7-p1-PHP-Fatal-error-Hotfix) Knowledge Base article for information on both patch and issue.
2528

26-
* *PHP fatal error on upgrade*. This issue was previously addressed by patch `AC-384__Fix_Incompatible_PHP_Method__2.3.7-p1_ce.patch to address PHP fatal error on upgrade`.
27-
28-
* *Previously placed order price is displayed when a shopper tries to place an order with a different product using the PayPal payment method*. This issue was previously addressed by patch `Adobe Commerce 2.3.7-p1 known issue outdated order total for PayPal`.
29+
* patch `Adobe Commerce 2.3.7-p1 known issue outdated order total for PayPal`. See the [Adobe Commerce upgrade 2.4.3, 2.3.7-p1 PHP Fatal error Hotfix](https://support.magento.com/hc/en-us/articles/4405999788685-Adobe-Commerce-2-3-7-p1-known-issue-outdated-order-total-for-PayPal) Knowledge Base article for information on both patch and issue.
2930

3031
### Security highlights
3132

@@ -45,8 +46,8 @@ The unsupported source expression `unsafe-inline` has been removed from the Cont
4546

4647
## Installation and upgrade instructions
4748

48-
For instructions on downloading and applying security-only patches (including patch 2.3.7-p2), see [Quick start install]({{site.baseurl}}/guides/v2.4/install-gde/composer.html).
49+
For instructions on downloading and applying security patches (including patch 2.3.7-p2), see [Quick start install]({{site.baseurl}}/guides/v2.4/install-gde/composer.html).
4950

5051
## More information?
5152

52-
For general information about security-only patches, see the Magento DevBlog post [Introducing the New Security-only Patch Release](https://community.magento.com/t5/Magento-DevBlog/Introducing-the-New-Security-only-Patch-Release/ba-p/141287).
53+
For general information about security patches, see the Magento DevBlog post [Introducing the New Security-only Patch Release](https://community.magento.com/t5/Magento-DevBlog/Introducing-the-New-Security-only-Patch-Release/ba-p/141287).

src/guides/v2.4/release-notes/2-4-3-p1.md

Lines changed: 11 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -3,22 +3,25 @@ group: release-notes
33
title: Adobe Commerce 2.4.3-p1 Release Notes
44
---
55

6-
{{ site.data.var.ee }} 2.4.3-p1 is a security-only release that provides seven security fixes that enhance your {{ site.data.var.ee }} 2.4.3 or {{ site.data.var.ce }} 2.4.3 deployment. Merchants can now install time-sensitive security fixes without applying the hundreds of functional fixes and enhancements that a full quarterly release provides. Patch 2.4.3-p1 provides fixes for vulnerabilities that have been identified in our previous quarterly release, {{ site.data.var.ee }} 2.4.3 and {{ site.data.var.ce }} 2.4.3.
6+
{{ site.data.var.ee }} 2.4.3-p1 is a security release that provides seven security fixes that enhance your {{ site.data.var.ee }} 2.4.3 or {{ site.data.var.ce }} 2.4.3 deployment. It provides fixes for vulnerabilities that have been identified in our previous quarterly release, {{ site.data.var.ee }} 2.4.3 and {{ site.data.var.ce }} 2.4.3.
77

88
{:.bs-callout-info}
99
Quarterly releases may contain backward-incompatible changes (BIC). To review minor backward-incompatible changes, see [BIC reference]({{page.baseurl}}/release-notes/backward-incompatible-changes/reference.html). (Major backward-incompatible issues are described in [BIC highlights]({{page.baseurl}}/release-notes/backward-incompatible-changes/index.html). Not all releases introduce major BICs.)
1010

1111
## What's in this release?
1212

13-
Seven security fixes and several security enhancements are included in this security patch. Only one of these seven fixes is an externally reported vulnerability. Fixes for externally reported vulnerabilities are documented in the [Adobe Security Bulletin](https://helpx.adobe.com/security/products/magento/apsb21-86.html).
13+
This security patch includes:
1414

15-
Security-only patches typically include all hotfixes that have been released for the preceding complete release. This release incorporates the two hot fixes that have been released for {{ site.data.var.ee }} 2.4.3 and {{ site.data.var.ce }} 2.4.3. See [Adobe Commerce 2.4.3 Release Notes]({{page.baseurl}}/release-notes/commerce-2-4-3.html) for information about these hotfixes.
15+
* all hotfixes that have been released for the preceding complete release
16+
* security enhancements/highlights
17+
* seven security bug fixes. Only one of these seven fixes is an externally reported vulnerability. Fixes for externally reported vulnerabilities are documented in the [Adobe Security Bulletin](https://helpx.adobe.com/security/products/magento/apsb21-86.html).
18+
* bug fixes for the [Braintree](https://docs.magento.com/user-guide/payment/braintree.html), [Klarna](https://docs.magento.com/user-guide/payment/klarna.html#changes-in-the-latest-release), and [Vertex](https://docs.magento.com/user-guide/tax/vertex.html#changes-in-the-latest-release) vendor-developed extensions.
1619

17-
This release also includes bug fixes for the [Braintree](https://docs.magento.com/user-guide/payment/braintree.html), [Klarna](https://docs.magento.com/user-guide/payment/klarna.html#changes-in-the-latest-release), and [Vertex](https://docs.magento.com/user-guide/tax/vertex.html#changes-in-the-latest-release) vendor-developed extensions.
20+
### Hotfixes included in Adobe Commerce 2.4.3-p1
1821

19-
### Resolution of known issues in Adobe Commerce 2.4.3
22+
This release includes the following hotfix:
2023

21-
This release includes a fix for the PHP fatal error on upgrade known issue, which was first identified in {{ site.data.var.ee }} 2.4.3 or {{ site.data.var.ce }} 2.4.3. This issue was previously addressed by patch `AC-384__Fix_Incompatible_PHP_Method__2.3.7-p1_ce.patch to address PHP fatal error on upgrade`.
24+
* patch `AC-384__Fix_Incompatible_PHP_Method__2.3.7-p1_ce.patch to address PHP fatal error on upgrade`. See the [Adobe Commerce upgrade 2.4.3, 2.3.7-p1 PHP Fatal error Hotfix](https://support.magento.com/hc/en-us/articles/4408021533069-Adobe-Commerce-upgrade-2-4-3-2-3-7-p1-PHP-Fatal-error-Hotfix) Knowledge Base article for information on both patch and issue.
2225

2326
### Security highlights
2427

@@ -34,8 +37,8 @@ The unsupported source expression `unsafe-inline` has been removed from the Cont
3437

3538
## Installation and upgrade instructions
3639

37-
For instructions on downloading and applying security-only patches (including patch 2.4.3-p1), see [Quick start install]({{site.baseurl}}/guides/v2.4/install-gde/composer.html).
40+
For instructions on downloading and applying security patches (including patch 2.4.3-p1), see [Quick start install]({{site.baseurl}}/guides/v2.4/install-gde/composer.html).
3841

3942
## More information?
4043

41-
For general information about security-only patches, see the Magento DevBlog post [Introducing the New Security-only Patch Release](https://community.magento.com/t5/Magento-DevBlog/Introducing-the-New-Security-only-Patch-Release/ba-p/141287).
44+
For general information about security patches, see the Magento DevBlog post [Introducing the New Security-only Patch Release](https://community.magento.com/t5/Magento-DevBlog/Introducing-the-New-Security-only-Patch-Release/ba-p/141287).

0 commit comments

Comments
 (0)