This bug was fixed in the package courier-authlib -
0.61.0-1+lenny1ubuntu1
---------------
courier-authlib (0.61.0-1+lenny1ubuntu1) jaunty; urgency=low
* Merge from debian unstable (LP: #309837), remaining changes:
-debian/courier-authdaemon.init: recreate /var/run/courier/authdaemon.
courier-authlib (0.61.0-1+lenny1) testing-security; urgency=high
* Non-maintainer upload by the security team
* Fix several sql-injection vulnerabilities in authpgsqllib.c by using
PQsetClientEncoding() and PQescapeStringConn()
Fixes: CVE-2008-2380
-- Manny Vindiola <[email protected]> Fri, 19 Dec 2008 16:40:29 -0500
** Changed in: courier-authlib (Ubuntu)
Status: Fix Committed => Fix Released
--
please mere courier-authlib 0.61.0-1+lenny1 from debian main
https://bugs.launchpad.net/bugs/309837
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
--
universe-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/universe-bugs