Here's the equivalent patch that applies cleanly to 2.9.2. However, although it looks OK to me at a cursory glance, I haven't checked for any unintended side-effects, so it needs review.
** Attachment added: "Version of upstream patch that applies cleanly to 2.9.2" https://bugs.launchpad.net/ubuntu/+source/wordpress/+bug/695646/+attachment/1779523/+files/patch -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/695646 Title: Critical wordpress update: HTML sanitization -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs