Bug#308534: Wordpress vulnerability details / Wordpress hardly suitable for a stable release

2005-05-15 Thread Moritz Muehlenhoff
Hi, this seems to describe the details of the vulnerability fixed in Wordpress 1.5.1 and it roughly matches the description by io_error: http://www.mindblaze.net/articles/information-technology/security-breach-in-wordpress-15-rss-feeds-enclosures/ However, I think that upstream's reaction renders

Bug#308534: Wordpress vulnerability details / Wordpress hardly suitable for a stable release

2005-05-15 Thread Steve Langasek
On Sun, May 15, 2005 at 10:52:04AM +0200, Moritz Muehlenhoff wrote: this seems to describe the details of the vulnerability fixed in Wordpress 1.5.1 and it roughly matches the description by io_error:

Bug#308534: Wordpress vulnerability details / Wordpress hardly suitable for a stable release

2005-05-15 Thread Kai Hendry
I find there is always security issues associated with PHP apps. :/ I support Moritiz's decision. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#308534: Wordpress vulnerability details / Wordpress hardly suitable for a stable release

2005-05-15 Thread Steve Langasek
On Sun, May 15, 2005 at 12:28:45PM +0300, Kai Hendry wrote: I find there is always security issues associated with PHP apps. :/ I support Moritiz's decision. Ok -- you don't have to tell me twice :) wordpress is tagged for removal from sarge. If you want to also prevent it from getting into