www/drupal4 and www/drupal5: Multiple security vulnerabilities
- From: Linh Pham <question@xxxxxxxxxxxxx>
- Date: Thu, 18 Oct 2007 13:44:04 -0700
The Drupal project announced several security vulnerabilities for the
4.7.x and 5.x releases of the Drupal package. These effect two current
ports: www/drupal4 and www/drupal5.
The following are the security advisories that were posted:
4.7.x:
* DRUPAL-SA-2007-024: http://drupal.org/node/184315
* DRUPAL-SA-2007-026: http://drupal.org/node/184320
* DRUPAL-SA-2007-030: http://drupal.org/node/184354
5.x:
* DRUPAL-SA-2007-024: http://drupal.org/node/184315
* DRUPAL-SA-2007-025: http://drupal.org/node/184316
* DRUPAL-SA-2007-026: http://drupal.org/node/184320
* DRUPAL-SA-2007-029: http://drupal.org/node/184348
* DRUPAL-SA-2007-030: http://drupal.org/node/184354
While patches are available for 4.7.7 and 5.2, they recommend an update
to the latest version of the respective branches (4.7.8 and 5.3).
--
Linh Pham
question@xxxxxxxxxxxxx
http://closedsrc.org/
Attachment:
pgpS8uff3R46g.pgp
Description: PGP signature
- Follow-Ups:
- Re: www/drupal4 and www/drupal5: Multiple security vulnerabilities
- From: CmdLnKid
- Re: www/drupal4 and www/drupal5: Multiple security vulnerabilities
- From: Nick Hilliard
- Re: www/drupal4 and www/drupal5: Multiple security vulnerabilities
- Prev by Date: Re: issetugid() for other procs
- Next by Date: [simon@FreeBSD.org: cvs commit: src/crypto/openssl/ssl d1_both.c dtls1.h ssl.h ssl_err.c]
- Previous by thread: issetugid() for other procs
- Next by thread: Re: www/drupal4 and www/drupal5: Multiple security vulnerabilities
- Index(es):
Relevant Pages
|
|