On 08/14/2011 12:08 AM, Ansgar Burchardt wrote:
> Package: src:dtc
> Version: 0.29.17-1+lenny1
> Severity: grave
> Tags: security upstream
> 
> There is an SQL injection in admin/inc/draw_user_admin.php that has been
> fixed upstream, but not in Lenny:
> 
> http://git.gplhost.com/gitweb/?p=dtc.git;a=commitdiff;h=dd1d377142f860e105607bc9bb96a39a4fc83335
> 
> Ansgar

I believe this was also fixed in Lenny with a QA upload.

Thomas



-- 
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to