[development] Fwd: [SECURITY] [DSA 1125-1] New drupal packages fix execution of arbitrary web script code

Larry Garfield larry at garfieldtech.com
Wed Jul 26 23:06:48 UTC 2006


On Wed, July 26, 2006 5:10 pm, Bèr Kessels said:
> Just a FYI. Also to let you people know that 4.5* is not as dead as we
> might
> want/think.
>

> For the stable distribution (sarge) these problems have been fixed in
> version 4.5.3-6.1sarge1.
>
> For the unstable distribution (sid) these problems have been fixed in
> version 4.5.8-1.1.
>
> We recommend that you upgrade your drupal packages.

I recommend Debian upgrades its Drupal packages, too.  I understand Sarge,
but why does Sid include 4.5.x?

--Larry Garfield



More information about the development mailing list