Bug#471200: ships embedded copy of smarty with security bug

2008-03-16 Thread Cajus Pollmeier
Am Sonntag, 16. März 2008 16:57:59 schrieb Nico Golde: > Package: gosa > Severity: grave > Tags: security patch > > Hi, > A security issue has been discovered in Smarty which is also > > shipped as part of gosa: > | The modifier.regex_replace.php plugin in Smarty before 2.6.19, as used > | by Seren

Bug#471200: ships embedded copy of smarty with security bug

2008-03-16 Thread Nico Golde
Package: gosa Severity: grave Tags: security patch Hi, A security issue has been discovered in Smarty which is also shipped as part of gosa: | The modifier.regex_replace.php plugin in Smarty before 2.6.19, as used | by Serendipity (S9Y) and other products, allows attackers to call | arbitrary PH