Bug#605603: wordpress: Author level SQL injection vulnerability fixed in 3.0.2

2010-12-02 Thread Dominic Hargreaves
On Thu, Dec 02, 2010 at 09:03:00PM +0900, Hideki Yamane wrote: > tags 605603 patch > thanks > > Hi, > > >This looks worthy of an update for squeeze. Note that the other updates > >in 3.0.2 also include various security hardening issues so it may be > >most appropriate to upload 3.0.2 itself for s

Bug#605603: wordpress: Author level SQL injection vulnerability fixed in 3.0.2

2010-12-02 Thread Hideki Yamane
tags 605603 patch thanks Hi, >This looks worthy of an update for squeeze. Note that the other updates >in 3.0.2 also include various security hardening issues so it may be >most appropriate to upload 3.0.2 itself for squeeze. However, you know, we are in freeze and 3.0.1 and 3.0.2 diff is about

Bug#605603: wordpress: Author level SQL injection vulnerability fixed in 3.0.2

2010-12-01 Thread Dominic Hargreaves
Package: wordpress Version: 3.0.1-2 Severity: grave Tags: security Justification: user security hole 3.0.2 includes an update which appears to fix an SQL injection attack: This looks worthy of an update f