oss-sec mailing list archives

Re: CVE Request -- php-doctrine-Doctrine -- SQL injection flaw


From: "Steven M. Christey" <coley () rcf-smtp mitre org>
Date: Mon, 28 Mar 2011 10:30:02 -0400 (EDT)


On Fri, 25 Mar 2011, Jan Lieskovsky wrote:

a SQL injection flaw has been reported against Doctrine, the PHP Object Relational Mapper:
 [1] http://www.doctrine-project.org/blog/doctrine-security-fix
 [2] https://bugzilla.redhat.com/show_bug.cgi?id=689396

Use CVE-2011-1522

- Steve


Current thread: