oss-sec mailing list archives

CVE request: Wordpress


From: Alex Legler <a3li () gentoo org>
Date: Tue, 4 Aug 2009 19:16:18 +0200

Hey,

yet another Wordpress release:

http://wordpress.org/development/2009/08/wordpress-2-8-3-security-release/

Given the upstream statement and the changesets (see below), it looks
like an incomplete fix for CVE-2009-2334.

Changes:
http://core.trac.wordpress.org/changeset/11769
http://core.trac.wordpress.org/changeset/11769
http://core.trac.wordpress.org/changeset/11766
http://core.trac.wordpress.org/changeset/11765

Please assign a CVE.

Thanks, Alex

Attachment: signature.asc
Description:


Current thread: