From 58a015c7371684ee84483c4e3da5e597f6c86e75 Mon Sep 17 00:00:00 2001 From: "matty%chariot.net.au" <> Date: Sat, 8 Jun 2002 06:39:35 +0000 Subject: Release notes updates. --- docs/rel_notes.txt | 10 ++++++---- 1 file changed, 6 insertions(+), 4 deletions(-) (limited to 'docs') diff --git a/docs/rel_notes.txt b/docs/rel_notes.txt index 9d84e6818..366673f97 100644 --- a/docs/rel_notes.txt +++ b/docs/rel_notes.txt @@ -143,10 +143,6 @@ fix the problem on your installation. *** SECURITY ISSUES RESOLVED *** -- The bug list sort order could take arbitrary SQL. There - are no known exploits for this problem. - (bug 130821) - - The bug reporter could set the priority even when 'letsubmitterchoosepriority' was off. (bug 63018) @@ -401,6 +397,12 @@ fix the problem on your installation. corrupted. (bug 92263) +- The bug list sort order is now stricter about the SQL it will accept, + ensuring you use correct column name syntax. Before this, there were + some syntax checks, so it is not known whether this problem was + exploitable. + (bug 130821) + ******************************************** *** USERS UPGRADING FROM 2.14 OR EARLIER *** ******************************************** -- cgit v1.2.3-24-g4f1b