Package: src:dtc Version: 0.29.17-1+lenny1 Severity: grave Tags: security upstream
There is an SQL injection in admin/inc/draw_user_admin.php that has been fixed upstream, but not in Lenny: http://git.gplhost.com/gitweb/?p=dtc.git;a=commitdiff;h=dd1d377142f860e105607bc9bb96a39a4fc83335 Ansgar -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org