From da260ea0180ee6bda64693b4d229031277f7cb9d Mon Sep 17 00:00:00 2001 From: obache Date: Tue, 22 Jan 2013 11:49:33 +0000 Subject: Note CVE-2012-0834 --- databases/phpldapadmin/distinfo | 4 ++-- databases/phpldapadmin/patches/patch-lib_QueryRender.php | 3 ++- 2 files changed, 4 insertions(+), 3 deletions(-) diff --git a/databases/phpldapadmin/distinfo b/databases/phpldapadmin/distinfo index 6466de97f72..9b89c22822d 100644 --- a/databases/phpldapadmin/distinfo +++ b/databases/phpldapadmin/distinfo @@ -1,4 +1,4 @@ -$NetBSD: distinfo,v 1.12 2013/01/21 12:43:23 taca Exp $ +$NetBSD: distinfo,v 1.13 2013/01/22 11:49:33 obache Exp $ SHA1 (phpldapadmin-1.2.2.tgz) = 2904923eb25173d108b556c70fb3d42cd6e0e289 RMD160 (phpldapadmin-1.2.2.tgz) = dd93d9558c9780b014f066d070b496e2804b9565 @@ -6,6 +6,6 @@ Size (phpldapadmin-1.2.2.tgz) = 1415565 bytes SHA1 (patch-htdocs_add__value__form.php) = 74e7128a36391c7ccce1a4a25bb115290fd8af3e SHA1 (patch-htdocs_export.php) = 822cb73c754d83a8e080bc709db36d3d7d90deb4 SHA1 (patch-htdocs_logout.php) = f09fdceb60faad2d2c49c37fa9ca01ac3c2e332e -SHA1 (patch-lib_QueryRender.php) = f8d34daf92bd97b6f9de04a25329db81aafb307d +SHA1 (patch-lib_QueryRender.php) = 976eb66a7c50ed992886a3c4f79d2ae7d3c2f52e SHA1 (patch-lib_export__functions.php) = ace9e5b372ea34e54a24a1679cc43c5c5393d038 SHA1 (patch-lib_functions.php) = a596507eba2a32bf674cac093b307bfe765510bb diff --git a/databases/phpldapadmin/patches/patch-lib_QueryRender.php b/databases/phpldapadmin/patches/patch-lib_QueryRender.php index 0d06fa83a11..4d0540e5efd 100644 --- a/databases/phpldapadmin/patches/patch-lib_QueryRender.php +++ b/databases/phpldapadmin/patches/patch-lib_QueryRender.php @@ -1,6 +1,7 @@ -$NetBSD: patch-lib_QueryRender.php,v 1.1 2013/01/21 12:43:23 taca Exp $ +$NetBSD: patch-lib_QueryRender.php,v 1.2 2013/01/22 11:49:33 obache Exp $ o Fix XSS in query from repository, 7dc8d57d6952fe681cb9e8818df7f103220457bd. + CVE-2012-0834 --- lib/QueryRender.php.orig 2011-10-27 02:07:09.000000000 +0000 +++ lib/QueryRender.php -- cgit v1.2.3