Comment 4 for bug 309837

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package courier-authlib - 0.61.0-1+lenny1ubuntu1

---------------
courier-authlib (0.61.0-1+lenny1ubuntu1) jaunty; urgency=low

  * Merge from debian unstable (LP: #309837), remaining changes:
     -debian/courier-authdaemon.init: recreate /var/run/courier/authdaemon.

courier-authlib (0.61.0-1+lenny1) testing-security; urgency=high

  * Non-maintainer upload by the security team
  * Fix several sql-injection vulnerabilities in authpgsqllib.c by using
    PQsetClientEncoding() and PQescapeStringConn()
    Fixes: CVE-2008-2380

 -- Manny Vindiola <email address hidden> Fri, 19 Dec 2008 16:40:29 -0500