Bug#400582: present in 2.2 as well

2006-12-06 Thread Cameron Dale
On 12/6/06, Cameron Dale <[EMAIL PROTECTED]> wrote: On 12/4/06, Stefan Fritsch <[EMAIL PROTECTED]> wrote: > The metaInfo.php issue doesn't seem to be fixed in 2.2 To be clear, I would like to point out that the more serious remote command execution using metaInfo.php IS fixed in 2.2. Sorry for

Bug#400582: present in 2.2 as well

2006-12-06 Thread Cameron Dale
On 12/4/06, Stefan Fritsch <[EMAIL PROTECTED]> wrote: The metaInfo.php issue doesn't seem to be fixed in 2.2 To be clear, I would like to point out that the more serious remote command execution using metaInfo.php IS fixed in 2.2. However, the local privilege escalation is present in 2.2 by a

Bug#400582: present in 2.2 as well

2006-12-04 Thread Stefan Fritsch
The metaInfo.php issue doesn't seem to be fixed in 2.2 -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]