summaryrefslogtreecommitdiff
path: root/databases/phpldapadmin/patches/patch-lib_QueryRender.php
diff options
context:
space:
mode:
Diffstat (limited to 'databases/phpldapadmin/patches/patch-lib_QueryRender.php')
-rw-r--r--databases/phpldapadmin/patches/patch-lib_QueryRender.php25
1 files changed, 0 insertions, 25 deletions
diff --git a/databases/phpldapadmin/patches/patch-lib_QueryRender.php b/databases/phpldapadmin/patches/patch-lib_QueryRender.php
deleted file mode 100644
index 4d0540e5efd..00000000000
--- a/databases/phpldapadmin/patches/patch-lib_QueryRender.php
+++ /dev/null
@@ -1,25 +0,0 @@
-$NetBSD: patch-lib_QueryRender.php,v 1.2 2013/01/22 11:49:33 obache Exp $
-
-o Fix XSS in query from repository, 7dc8d57d6952fe681cb9e8818df7f103220457bd.
- CVE-2012-0834
-
---- lib/QueryRender.php.orig 2011-10-27 02:07:09.000000000 +0000
-+++ lib/QueryRender.php
-@@ -497,7 +497,7 @@ class QueryRender extends PageRender {
- $this->getAjaxRef($base),
- $this->getAjaxRef($base),
- ($show == $this->getAjaxRef($base) ? '#F0F0F0' : '#E0E0E0'),
-- $base);
-+ htmlspecialchars($base));
- }
- echo '</tr>';
- echo '</table>';
-@@ -545,7 +545,7 @@ class QueryRender extends PageRender {
- echo ' ]</small>';
-
- echo '<br />';
-- printf('<small>%s: <b>%s</b></small>',_('Base DN'),$base);
-+ printf('<small>%s: <b>%s</b></small>',_('Base DN'), htmlspecialchars($base));
-
- echo '<br />';
- printf('<small>%s: <b>%s</b></small>',_('Filter performed'),htmlspecialchars($this->template->resultsdata[$base]['filter']));