|
From: | Sigurd Nes |
Subject: | Re: [Phpgroupware-developers] Re: phpGroupWare 0.9.16.006 Security Fix Release - correction |
Date: | Wed, 06 Jul 2005 00:12:46 +0200 |
User-agent: | Mozilla Thunderbird 1.0.2 (Windows/20050317) |
Dave Hall wrote:
On Tue, 2005-07-05 at 12:05 +1000, Dave Hall wrote:Hi all, All phpGroupWare versions earlier than 0.9.16.006 have an arbitrary code execution vulnerability, as outlined in the upstream annoucement - seeCAN-2005-1921Correction it is SA15852 - http://secunia.com/advisories/15852/ not CAN-2005-1921, we don't use PEAR XML-RPC. Sorry for the confusion. Cheers Dave
You might want to update $setup_info['phpgwapi']['version'] in phpgwapi/setup/setup.inc.php
Regards Sigurd
[Prev in Thread] | Current Thread | [Next in Thread] |