<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="wordpress/2.3.3" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>slidePresenter</title>
	<link>http://slides.sourceforge.net/blog</link>
	<description>Real-time slide presentations with only a web browser</description>
	<pubDate>Fri, 21 Mar 2008 19:01:12 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.3.3</generator>
	<language>en</language>
			<item>
		<title>released: slidePresenter-0.40 (stable)</title>
		<link>http://slides.sourceforge.net/blog/?p=28</link>
		<comments>http://slides.sourceforge.net/blog/?p=28#comments</comments>
		<pubDate>Fri, 21 Mar 2008 19:01:12 +0000</pubDate>
		<dc:creator>Allen Shaw</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://slides.sourceforge.net/blog/?p=28</guid>
		<description><![CDATA[Announcing the release of slidePresenter-0.40 (stable).
This is the stable release of slidePresenter-0.4x, based on community review of slidePresenter-0.40-RC-1 (Release Candidate) released on March 12.
All known bugs are fixed in this release.  Thanks to the following community members for reporting bugs and/or suggesting improvements:
- Mike: files imported from zip archives are now added in
alphabetical order
Changes [...]]]></description>
			<content:encoded><![CDATA[<p>Announcing the release of slidePresenter-0.40 (stable).</p>
<p>This is the stable release of slidePresenter-0.4x, based on community review of slidePresenter-0.40-RC-1 (Release Candidate) released on March 12.</p>
<p>All known bugs are fixed in this release.  Thanks to the following community members for reporting bugs and/or suggesting improvements:<br />
- Mike: files imported from zip archives are now added in<br />
alphabetical order</p>
<p>Changes to the 0.4x branch will now be limited to bug-fixes, and all feature improvements will be made on the 0.5x branch, starting with items listed in the <a href="http://slides.sourceforge.net/blog/?page_id=7" title="slidePresenter Project Roadmap">Project Roadmap</a></p>
<p>The new version can be downloaded from the <a href="http://slides.sourceforge.net/blog/?page_id=6" title="download slidePresenter">Download</a> page. Note that a minor fix made today (formatting user-readable files for easier reading on MS-Windows systems) bumped the latest version number up to 0.41.</p>
<p>Thanks to the slidePresenter community for all bug reports, beta testing, and feature suggestions.</p>
]]></content:encoded>
			<wfw:commentRss>http://slides.sourceforge.net/blog/?feed=rss2&amp;p=28</wfw:commentRss>
		</item>
		<item>
		<title>released: slidePresenter-0.40 Release Candidate</title>
		<link>http://slides.sourceforge.net/blog/?p=27</link>
		<comments>http://slides.sourceforge.net/blog/?p=27#comments</comments>
		<pubDate>Wed, 12 Mar 2008 22:43:18 +0000</pubDate>
		<dc:creator>Allen Shaw</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://slides.sourceforge.net/blog/?p=27</guid>
		<description><![CDATA[Announcing the release of slidePresenter-0.40-RC-1.
This is a Release Candidate, expected to be fully ready for release as version 0.40 (stable). It includes support for upgrading existing installations from versions 0.3x and below, as well as improved language file handling and various bug-fixes.
As a Release Candidate, this release provides the community with the chance to comment [...]]]></description>
			<content:encoded><![CDATA[<p>Announcing the release of slidePresenter-0.40-RC-1.</p>
<p>This is a Release Candidate, expected to be fully ready for release as version 0.40 (stable). It includes support for upgrading existing installations from versions 0.3x and below, as well as improved language file handling and various bug-fixes.</p>
<p>As a Release Candidate, this release provides the community with the chance to comment on any final tweaks that may be discovered in the next week. Barring any major flaws, and with all known bugs fixed, this release will be re-branded as slidePresenter-0.40 and released in seven days.</p>
<p>The new version can be downloaded from the following location: <a target="_blank" title="Download slidePresenter" href="http://sourceforge.net/project/showfiles.php?group_id=181580">http://sourceforge.net/project/showfiles.php?group_id=181580</a></p>
<p>Thanks to the slidePresenter community for all bug reports, feature requests, and new ideas.</p>
]]></content:encoded>
			<wfw:commentRss>http://slides.sourceforge.net/blog/?feed=rss2&amp;p=27</wfw:commentRss>
		</item>
		<item>
		<title>Security upgrade version released</title>
		<link>http://slides.sourceforge.net/blog/?p=26</link>
		<comments>http://slides.sourceforge.net/blog/?p=26#comments</comments>
		<pubDate>Thu, 12 Jul 2007 22:40:40 +0000</pubDate>
		<dc:creator>Allen Shaw</dc:creator>
		
		<category><![CDATA[News]]></category>

		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://slides.sourceforge.net/blog/?p=26</guid>
		<description><![CDATA[As of this writing a new version of slidePresenter has been released which addresses security concerns mentioned in the July 4, 2007 security alert.  slidePresenter-0.40-beta-2 includes significant changes, specifically the addition of the SLP_SECURITY setting, which accepts values &#8220;MoreCautious&#8221; and &#8220;MoreConvenient&#8221;.  &#8220;MoreCautious&#8221; mode requires the use of command-line scripts for adding and removing slides and [...]]]></description>
			<content:encoded><![CDATA[<p>As of this writing a new version of slidePresenter has been released which addresses security concerns mentioned in the <a title="SECURITY ALERT: All slidePresenter versions" href="http://slides.sourceforge.net/blog/?p=24">July 4, 2007 security alert</a>.  slidePresenter-0.40-beta-2 includes significant changes, specifically the addition of the SLP_SECURITY setting, which accepts values &#8220;MoreCautious&#8221; and &#8220;MoreConvenient&#8221;.  &#8220;MoreCautious&#8221; mode requires the use of command-line scripts for adding and removing slides and presentations, whereas in &#8220;MoreConvenient&#8221; mode these features are available directly from the Web interface.</p>
<p>As with slidePresesenter-0.40-beta, this release does not provide tools to upgrade from previous versions.  These tools will be made available in the stable release of slidePresenter-0.40.  Subscribers to the slides-announce list will be notified when that version has been released.</p>
]]></content:encoded>
			<wfw:commentRss>http://slides.sourceforge.net/blog/?feed=rss2&amp;p=26</wfw:commentRss>
		</item>
		<item>
		<title>Patch Status</title>
		<link>http://slides.sourceforge.net/blog/?p=25</link>
		<comments>http://slides.sourceforge.net/blog/?p=25#comments</comments>
		<pubDate>Thu, 05 Jul 2007 04:38:50 +0000</pubDate>
		<dc:creator>Allen Shaw</dc:creator>
		
		<category><![CDATA[News]]></category>

		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://slides.sourceforge.net/blog/?p=25</guid>
		<description><![CDATA[In my last  post I mentioned that I expected to have a patched release of the slidePresenter-0.30 branch by end of day today.  However, the situation turns out to be a little more complex than I thought.  I am now hoping to have a stable release of the 0.40 branch to release [...]]]></description>
			<content:encoded><![CDATA[<p>In my last  post I mentioned that I expected to have a patched release of the slidePresenter-0.30 branch by end of day today.  However, the situation turns out to be a little more complex than I thought.  I am now hoping to have a stable release of the 0.40 branch to release tomorrow (July 5, 2007).</p>
<p>In case you&#8217;re curious, here is a little more detail:</p>
<p>The nature of the problem lies in the fact that the &#8220;data&#8221; directory is expected to be  writable by the web server, and to be located under the web server&#8217;s document root.  In a shared hosting environment, this is a significant security hole.* *<br />
The simplest fix would involve one of two changes, neither of which happen to be appropriate for slidePresenter: either turning off write privileges to this directory for the web server (which would completely prevent you from moving from one slide to the next, among other things), or move this directory out of the document root (which would prevent the slide images from being displayed).  The alternative option, the one I want to implement, is to separate the data directory into two parts: one located above the server&#8217;s document root, for the data files that keep track of each presentation&#8217;s properties (name, description, current slide, etc.); and another, within the document root for the slide images themselves.</p>
<p>On a new installation, it&#8217;s not important that the structure of the data directory has changed since the last release.  But for people who are upgrading an existing installation, it matters a great deal.  If these users are going to be able to keep their existing presentations through the upgrade, slidePresenter will need to provide a way for them to reorganize their presentation data into the new structure.</p>
<p>It just so happens that this issue of upgrading to a new data structure is the one issue that remained undone in slidePresenter-0.40 when the beta version was released.  This means that if I am going to spend the time to write upgrade scripts for a new release of the 0.30 branch, slidePresenter users might be better off if I would instead use that time to write upgrade scripts for the 0.40 branch, then publish a stable release of 0.40, and let users upgrade to that.</p>
<p>Although I would not normally discontinue support for the 0.30 branch until a stable release of the 0.50 branch, it seems in this case to be less work, both for me (avoid coding similar features twice), and for the community (avoid upgrading to 0.34 now &#8212; including conversion to a new data structure &#8212; and then again to 0.40 &#8212; converting to yet another data structure &#8212; soon afterward).</p>
<p>Note that this is still a fairly small community, so your concerns carry a lot of weight.  If you have specific reasons why you will not be able to upgrade to slidePresenter-0.40 and need a patch for the 0.30 branch, contact me (see the README.txt file in the distribution). I will do my best to help address your specific situation.</p>
<p>** I should point out that this &#8220;significant security hole&#8221; is also in place in many very popular software packages, including <a title="WP 2.1 Hacked via Uploads Directory" href="http://wordpress.org/support/topic/113058">WordPress</a>, which powers this very site.  Regardless, I believe it would be irresponsible to continue publishing slidePresenter without doing all I can to eliminate such a vulnerability.</p>
]]></content:encoded>
			<wfw:commentRss>http://slides.sourceforge.net/blog/?feed=rss2&amp;p=25</wfw:commentRss>
		</item>
		<item>
		<title>SECURITY ALERT: All slidePresenter versions</title>
		<link>http://slides.sourceforge.net/blog/?p=24</link>
		<comments>http://slides.sourceforge.net/blog/?p=24#comments</comments>
		<pubDate>Wed, 04 Jul 2007 19:36:36 +0000</pubDate>
		<dc:creator>Allen Shaw</dc:creator>
		
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://slides.sourceforge.net/blog/?p=24</guid>
		<description><![CDATA[As of 15:30 PM Eastern Time, July 4, 2007, all existing versions of
slidePresenter were found to contain a security flaw in which certain
server-executable files may be written by an attacker having
write-access to the web server. Although no known flaws in
slidePresenter provide that access, I have no way of confirming the same
is true of all other [...]]]></description>
			<content:encoded><![CDATA[<p>As of 15:30 PM Eastern Time, July 4, 2007, all existing versions of<br />
slidePresenter were found to contain a security flaw in which certain<br />
server-executable files may be written by an attacker having<br />
write-access to the web server. Although no known flaws in<br />
slidePresenter provide that access, I have no way of confirming the same<br />
is true of all other services running on a web server.</p>
<p>Therefore, all archived versions of slidePresenter are being pulled from<br />
the download site at sourceforge.net until this vulnerability has been<br />
patched.</p>
<p>Existing slidePresenter users in shared hosting environments are<br />
encouraged to discontinue use of slidePresenter until a patched version<br />
can be installed.</p>
<p>I expect to have a patched version for the slidePresenter-0.30 branch<br />
released by end of day on July 4, 2007.  Users of previous versions will<br />
be encouraged to upgrade to that patched 0.30 release.</p>
<p>Subscribers to the slides-announce list will be notified when patched<br />
versions have been released.</p>
]]></content:encoded>
			<wfw:commentRss>http://slides.sourceforge.net/blog/?feed=rss2&amp;p=24</wfw:commentRss>
		</item>
		<item>
		<title>SECURITY ALERT: slidePresenter-0.40-beta</title>
		<link>http://slides.sourceforge.net/blog/?p=23</link>
		<comments>http://slides.sourceforge.net/blog/?p=23#comments</comments>
		<pubDate>Fri, 29 Jun 2007 20:41:59 +0000</pubDate>
		<dc:creator>Allen Shaw</dc:creator>
		
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://slides.sourceforge.net/blog/?p=23</guid>
		<description><![CDATA[This is a security alert regarding slidePresenter-0.40-beta.
As released, slidePresenter-0.40-beta contains a security flaw in which certain server-executable .php files may be overwritten by an attacker having write-access to the web server.  Although no known flaws in slidePresenter provide that access, I have no way of confirming the same is true of all other services [...]]]></description>
			<content:encoded><![CDATA[<p>This is a security alert regarding slidePresenter-0.40-beta.</p>
<p>As released, slidePresenter-0.40-beta contains a security flaw in which certain server-executable .php files may be overwritten by an attacker having write-access to the web server.  Although no known flaws in slidePresenter provide that access, I have no way of confirming the same is true of all other services running on your web server.</p>
<p>Therefore, all users of slidePresenter-0.40-beta are encouraged to discontinue its use and revert to the latest stable version (slidePresenter-0.33) until this vulnerability has been patched.  To prevent further distribution of the vulnerable code, slidePresenter-0.40-beta has been removed from the download site at sourceforge.net; all other previously released versions are still available.</p>
<p>Subscribers to the slides-announce list will be notified when a patched version has been released.</p>
]]></content:encoded>
			<wfw:commentRss>http://slides.sourceforge.net/blog/?feed=rss2&amp;p=23</wfw:commentRss>
		</item>
		<item>
		<title>Released: slidePresenter-0.40-beta</title>
		<link>http://slides.sourceforge.net/blog/?p=22</link>
		<comments>http://slides.sourceforge.net/blog/?p=22#comments</comments>
		<pubDate>Mon, 25 Jun 2007 00:26:07 +0000</pubDate>
		<dc:creator>Allen Shaw</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://slides.sourceforge.net/blog/?p=22</guid>
		<description><![CDATA[A few moments ago I posted slidePresenter-0.40-beta to Sourceforge.  Check out the demo and download it now for the latest slidePresenter features.
I&#8217;m really excited about this release, as it offers a great new feature to slide presenters: a virtual &#8220;laser pointer&#8221; for pointing out particular areas of a slide.  Even better than a [...]]]></description>
			<content:encoded><![CDATA[<p>A few moments ago I posted slidePresenter-0.40-beta to Sourceforge.  Check out the <a title="slidePresenter demo" href="http://slides.sourceforge.net/blog/?page_id=9">demo</a> and <a title="Download slidePresenter" href="http://slides.sourceforge.net/blog/?page_id=6">download it now</a> for the latest slidePresenter features.</p>
<p>I&#8217;m really excited about this release, as it offers a great new feature to slide presenters: a virtual &#8220;laser pointer&#8221; for pointing out particular areas of a slide.  Even better than a laser pointer, you can draw circles, squares, and straight lines (as well as the usual spot) in any of four colors.  With this feature, I believe slidePresenter is moving up to become the full-featured slideshow broadcast software people need, while remaining lightweight, offering a simple installation for presenters, and requiring zero installation for viewers.</p>
<p>slidePresenter-0.40-beta also provides these features, as called for in the <a title="slidePresenter Project Roadmap" href="http://slides.sourceforge.net/blog/?page_id=7">Project Roadmap</a>:</p>
<ul>
<li><strong>Thorough re-write of data management code</strong> (required for cursor indicaors feature, and database back-end option in version 0.60)</li>
<li><strong>“Slide x of y” display </strong>to indicate how far along the presentation is, in the View interface</li>
<li><strong>Degrade gracefully</strong> if Javascript is not enabled (essentially, explain to the user that Javascript is required, instead of just breaking without explanation)</li>
</ul>
<p>What&#8217;s missing from this release &#8212; the reason it&#8217;s only released as &#8220;beta&#8221; &#8212; is the capability of upgrading existing presentation files from earlier versions.  This feature will be added with the production relase of slidePresenter-0.40.  Users who are subscribed to the slides-announce list will be updated as soon as the new version is released.</p>
]]></content:encoded>
			<wfw:commentRss>http://slides.sourceforge.net/blog/?feed=rss2&amp;p=22</wfw:commentRss>
		</item>
		<item>
		<title>Ground-up improvements in version 0.40</title>
		<link>http://slides.sourceforge.net/blog/?p=21</link>
		<comments>http://slides.sourceforge.net/blog/?p=21#comments</comments>
		<pubDate>Thu, 24 May 2007 22:44:04 +0000</pubDate>
		<dc:creator>Allen Shaw</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://slides.sourceforge.net/blog/?p=21</guid>
		<description><![CDATA[slidePresenter-0.40 is scheduled for release by June 21, to include a completely re-written data management API.  This improvement in the back-end code, while making little visible difference in the style and functionality of slidePresenter, is essential in moving forward to more flexible data management options, including the option for a traditional database back-end (say, MySQL [...]]]></description>
			<content:encoded><![CDATA[<p>slidePresenter-0.40 is scheduled for release by June 21, to include a completely re-written data management API.  This improvement in the back-end code, while making little visible difference in the style and functionality of slidePresenter, is essential in moving forward to more flexible data management options, including the option for a traditional database back-end (say, MySQL or PostgreSQL) in version 0.60.  It&#8217;s also required to support the more complex data requirements involved in the &#8220;cursor indicators&#8221; feature scheduled for version 0.40.</p>
<p>You can see more about the future of slidePresenter in the <a title="slidePresenter Project Roadmap" href="http://slides.sourceforge.net/blog/?page_id=7">Project Roadmap</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://slides.sourceforge.net/blog/?feed=rss2&amp;p=21</wfw:commentRss>
		</item>
		<item>
		<title>700 downloads, and drawing on slides</title>
		<link>http://slides.sourceforge.net/blog/?p=20</link>
		<comments>http://slides.sourceforge.net/blog/?p=20#comments</comments>
		<pubDate>Fri, 06 Apr 2007 04:58:48 +0000</pubDate>
		<dc:creator>Allen Shaw</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://slides.sourceforge.net/blog/?p=20</guid>
		<description><![CDATA[Today slidePresenter saw its 700th download.  I&#8217;ll count this as a milestone worth celebrating.
With the release of slidePresenter-0.30 on March 30th, slidePresenter is starting to show the features it should have as an intentionally lightweight live slideshow broadcasting tool.  An improved delivery interface now includes controls for jumping to any slide, and the [...]]]></description>
			<content:encoded><![CDATA[<p>Today slidePresenter saw its 700th download.  I&#8217;ll count this as a milestone worth celebrating.</p>
<p>With the release of <a title="Download slidePresenter" href="http://sourceforge.net/project/showfiles.php?group_id=181580">slidePresenter-0.30</a> on March 30th, slidePresenter is starting to show the features it should have as an intentionally lightweight live slideshow broadcasting tool.  An improved delivery interface now includes controls for jumping to any slide, and the presentation editing interface now provides the option of importing slides from files located on the server (instead of requiring you to upload and import in one shot).</p>
<p>Next up will be features to allow the presenter to mark up the slides and have those markings appear on the viewers&#8217; side.  This will give you a way to highlight specific parts of a slide, as you might do with a pointer in a face-to-face presentation.  A quick proof-of-concept <a title="Drawing on slides: mock-up" href="http://slides.sourceforge.net/scratchpad/drawing/">mock-up</a> is available for the curious, though at this point it only draws the shapes and doesn&#8217;t illustrate the broadcast of those markings to viewers.  The actual feature will support several shapes and let you adjust line weight and color.</p>
<p>Expect this feature in slidePresenter-0.40.</p>
]]></content:encoded>
			<wfw:commentRss>http://slides.sourceforge.net/blog/?feed=rss2&amp;p=20</wfw:commentRss>
		</item>
		<item>
		<title>Importing slides on the server</title>
		<link>http://slides.sourceforge.net/blog/?p=19</link>
		<comments>http://slides.sourceforge.net/blog/?p=19#comments</comments>
		<pubDate>Tue, 20 Mar 2007 22:25:24 +0000</pubDate>
		<dc:creator>Allen Shaw</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://slides.sourceforge.net/blog/?p=19</guid>
		<description><![CDATA[As a followup to the real-time upload progress meter, I&#8217;ve been working on a feature that&#8217;s much more at the heart of the matter: allowing users to avoid large file uploads over http altogether.  I first thought that this would best be handled by having a command-line script to import files which exist on [...]]]></description>
			<content:encoded><![CDATA[<p>As a followup to the real-time upload progress meter, I&#8217;ve been working on a feature that&#8217;s much more at the heart of the matter: allowing users to avoid large file uploads over http altogether.  I first thought that this would best be handled by having a command-line script to import files which exist on the server, but file permission issues soon make that into a bit of a mess.</p>
<p>The better solution is to use the Web-based interface to import files that are on the server.  It&#8217;s less error-prone, makes better use of existing code, and more consistent for the user.</p>
<p>This feature is in testing now and should debut in the release of slidePresenter 0.30 later this week.</p>
]]></content:encoded>
			<wfw:commentRss>http://slides.sourceforge.net/blog/?feed=rss2&amp;p=19</wfw:commentRss>
		</item>
	</channel>
</rss>
