summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorRenat Lumpau <rl03@gentoo.org>2005-10-24 14:41:57 +0000
committerRenat Lumpau <rl03@gentoo.org>2005-10-24 14:41:57 +0000
commitd3ef1a543d544c4cf6acccfa6ba2221e8b003615 (patch)
treed9669109fa91af586b4aca81b41d13957f26d469 /www-apps/mantisbt/files
parentmerge with upstream (diff)
downloadgentoo-2-d3ef1a543d544c4cf6acccfa6ba2221e8b003615.tar.gz
gentoo-2-d3ef1a543d544c4cf6acccfa6ba2221e8b003615.tar.bz2
gentoo-2-d3ef1a543d544c4cf6acccfa6ba2221e8b003615.zip
Version bump wrt security bug #110326.
(Portage version: 2.0.51.22-r2)
Diffstat (limited to 'www-apps/mantisbt/files')
-rw-r--r--www-apps/mantisbt/files/0.19.3-debian.patch14
-rw-r--r--www-apps/mantisbt/files/digest-mantisbt-0.19.31
2 files changed, 15 insertions, 0 deletions
diff --git a/www-apps/mantisbt/files/0.19.3-debian.patch b/www-apps/mantisbt/files/0.19.3-debian.patch
new file mode 100644
index 000000000000..c9b68a416fb7
--- /dev/null
+++ b/www-apps/mantisbt/files/0.19.3-debian.patch
@@ -0,0 +1,14 @@
+diff -upr mantis-0.19.3/core/database_api.php mantis-0.19.3_fixed/core/database_api.php
+--- mantis-0.19.3/core/database_api.php 2004-12-09 13:55:06.000000000 -0500
++++ mantis-0.19.3_fixed/core/database_api.php 2005-10-24 10:30:31.000000000 -0400
+@@ -9,6 +9,10 @@
+ # $Id: 0.19.3-debian.patch,v 1.1 2005/10/24 14:41:57 rl03 Exp $
+ # --------------------------------------------------------
+
++ # Patch for #0005956: Database system scanner via variable poisoning
++ if (isset($_REQUEST["g_db_type"]))
++ die("");
++
+ ### Database ###
+
+ # This is the general interface for all database calls.
diff --git a/www-apps/mantisbt/files/digest-mantisbt-0.19.3 b/www-apps/mantisbt/files/digest-mantisbt-0.19.3
new file mode 100644
index 000000000000..267334cf9206
--- /dev/null
+++ b/www-apps/mantisbt/files/digest-mantisbt-0.19.3
@@ -0,0 +1 @@
+MD5 b3c1d9f6f66bc5e7e236cc9449aa3ced mantis-0.19.3.tar.gz 1289136