Koha 16.05.17 release

The Koha community is proud to announce the release of Koha 16.05.17.

Koha 16.05.17 can be downloaded from:

Installation instructions can be found at:

  • Koha Wiki
  • OR in the INSTALL files that come in the tarball

Koha 16.05.17 is a bugfix/maintenance release.

It includes 17 bugfixes and 6 security fixes.

Security bugs fixed

  • [19086] Multiple cross-site scripting vulnerabilities
  • [19103] Stored XSS in itemtypes.pl – patron-attr-types.pl – matching-rules.pl
  • [19108] Stored XSS in multiple scripts
  • [19125] XSS – members.pl
  • [19127] Stored XSS in csv-profiles.pl
  • [19128] XSS – patron-attr-types.tt, authorised_values.tt and categories.tt

Critical bugs fixed

Acquisitions

  • [18900] wrong number format in receiving order
  • [18906] Superlibrarian and budget_manage_all users should always see all funds

Authentication

  • [18046] Problem with redirect on logout with CAS

Circulation

  • [19053] Auto renewal flag is not kept if a confirmation is needed

Command-line Utilities

  • [18927] koha-rebuild-zebra is failing with “error retrieving biblio”

Installation and upgrade (web-based installer)

  • [18741] Web installer does not load default data

Reports

  • [18898] Some permissions for Reports can be bypassed

SIP2

  • [18996] SIP sets ok flag to true for refused checkin for data corruption

Tools

  • [19073] Can’t change library with patron batch modification tool

Other bugs fixed

Architecture, internals, and plumbing

  • [18921] Resolve a few warnings in C4/XSLT.pm

I18N/L10N

  • [17827] Untranslatable “by” in MARC21slim2intranetResults.xsl
  • [18649] Translatability: Get rid of tt directive in translation for admin/categories.tt and onboardingstep2.tt
  • [18652] Translatability: Get rid of tt directive in translation for uncertainprice.tt
  • [18654] Translatability: Get rid of tt directives starting with [%% in translation for itemsearch.tt
  • [18660] Translatability: Get rid of template directives [%% in translation for patroncards-errors.inc
  • [18778] Translatability: Get rid of tt directive in translation for item-status.inc

Patrons

  • [18551] Hide with CSS dynamic elements in member search

System requirements

Important notes:

  • Perl 5.10 is required
  • Zebra is required

Documentation

The Koha manual is maintained in DocBook.The home page for Koha
documentation is

As of the date of these release notes, only the English version of the
Koha manual is available:

The Git repository for the Koha manual can be found at

Translations

Complete or near-complete translations of the OPAC and staff
interface are available in this release for the following languages:

  • English (USA)
  • Arabic (98%)
  • Armenian (93%)
  • Basque (77%)
  • Chinese (China) (88%)
  • Chinese (Taiwan) (98%)
  • Czech (96%)
  • Danish (72%)
  • English (New Zealand) (96%)
  • Finnish (98%)
  • French (98%)
  • French (Canada) (92%)
  • German (99%)
  • German (Switzerland) (99%)
  • Greek (85%)
  • Hindi (98%)
  • Italian (99%)
  • Korean (53%)
  • Kurdish (51%)
  • Norwegian Bokmål (58%)
  • Occitan (79%)
  • Persian (60%)
  • Polish (99%)
  • Portuguese (100%)
  • Portuguese (Brazil) (88%)
  • Slovak (94%)
  • Spanish (99%)
  • Swedish (90%)
  • Turkish (99%)
  • Vietnamese (74%)

Partial translations are available for various other languages.

The Koha team welcomes additional translations; please see

for information about translating Koha, and join the koha-translate
list to volunteer:

The most up-to-date translations can be found at:

Release Team

The release team for Koha 16.05.17 is

Credits

We thank the following libraries who are known to have sponsored
new features in Koha 16.05.17:

We thank the following individuals who contributed patches to Koha 16.05.17.

  • Tomás Cohen Arazi (1)
  • David Cook (1)
  • Chris Cormack (3)
  • Marcel de Rooy (5)
  • Jonathan Druart (14)
  • Serhij Dubyk {Сергій Дубик} (1)
  • Katrin Fischer (4)
  • Amit Gupta (12)
  • Mason James (11)
  • Julian Maurice (1)
  • Alex Sassmannshausen (1)
  • Fridolin Somers (4)
  • Marc Véron (5)

We thank the following libraries, companies, and other institutions who contributed
patches to Koha 16.05.17

  • BibLibre (5)
  • BigBallOfWax (2)
  • BSZ BW (4)
  • bugs.koha-community.org (14)
  • Catalyst (1)
  • informaticsglobal.com (12)
  • KohaAloha (11)
  • Marc Véron AG (5)
  • Prosentient Systems (1)
  • PTFS-Europe (1)
  • Rijksmuseum (5)
  • Theke Solutions (1)
  • unidentified (1)

We also especially thank the following individuals who tested patches
for Koha.

  • Alex Buckley (2)
  • Amit Gupta (4)
  • Colin Campbell (4)
  • Fridolin Somers (11)
  • Jonathan Druart (16)
  • Josef Moravec (1)
  • Julian Maurice (1)
  • Katrin Fischer (32)
  • Lee Jamison (1)
  • Marc Véron (2)
  • Mark Tompsett (1)
  • Martin Renvoize (7)
  • Mason James (23)
  • Nick Clemens (3)
  • Owen Leonard (10)
  • Philippe (1)
  • Tomas Cohen Arazi (3)
  • Kyle M Hall (5)
  • Marcel de Rooy (26)
  • Serhij Dubyk {Сергій Дубик} (1)

We regret any omissions. If a contributor has been inadvertently missed,
please send a patch against these release notes to
koha-patches@lists.koha-community.org.

Revision control notes

The Koha project uses Git for version control. The current development
version of Koha can be retrieved by checking out the master branch of:

The branch for this version of Koha and future bugfixes in this release
line is 16.05.x-15.
The last Koha release was 3.22.8, which was released on June 24, 2016.

Bugs and feature requests

Bug reports and feature requests can be filed at the Koha bug
tracker at:

He rau ringa e oti ai.
(Many hands finish the work)

Autogenerated release notes updated last on 20 Sep 2017 06:54:48.

Posted in 16.05, release, releases, security