Package: drupal5
Version: 5.9-1
Severity: grave
Tags: security
Justification: user security hole


Drupal 5.9 suffers from several vulnerabilities (XSS). See
http://drupal.org/node/295053 for more details. Please upload Drupal 5.10
soon. Thx!

Regards, 
Ingo

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (500, 'stable')
Architecture: amd64 (x86_64)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.18-6-xen-amd64
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)

Versions of packages drupal5 depends on:
ii  apache2                   2.2.3-4+etch5  Next generation, scalable, extenda
ii  apache2-mpm-prefork [http 2.2.3-4+etch5  Traditional model for Apache HTTPD
ii  curl                      7.15.5-1etch1  Get a file from an HTTP, HTTPS, FT
ii  dbconfig-common           1.8.29+etch1   common framework for packaging dat
ii  debconf                   1.5.11etch2    Debian configuration management sy
ii  exim4-daemon-heavy [mail- 4.63-17        exim MTA (v4) daemon with extended
ii  mysql-client              5.0.32-7etch6  mysql database client (meta packag
ii  mysql-client-5.0 [mysql-c 5.0.32-7etch6  mysql database client binaries
ii  php5                      5.2.0-8+etch11 server-side, HTML-embedded scripti
ii  php5-gd                   5.2.0-8+etch11 GD module for php5
ii  php5-mysql                5.2.0-8+etch11 MySQL module for php5
ii  php5-pgsql                5.2.0-8+etch11 PostgreSQL module for php5
ii  wwwconfig-common          0.0.48         Debian web auto configuration

Versions of packages drupal5 recommends:
pn  mysql-server | postgresql     <none>     (no description available)

-- debconf information excluded



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to