oss-sec mailing list archives

CVE Request -- Zend Framework -- SQL injection when using PDO_MySql


From: Jan Lieskovsky <jlieskov () redhat com>
Date: Tue, 24 May 2011 08:33:14 +0200


Hello, Josh, Steve, vendors,

a possibility of SQL injection flaw has been reported in Zend Framework, when MySQL PDO driver was used:
[1] http://framework.zend.com/security/advisory/ZF2011-02

Could you allocate a CVE id for this?

Thank you & Regards, Jan.
--
Jan iankko Lieskovsky / Red Hat Security Response Team


Current thread: