summaryrefslogtreecommitdiffstats
path: root/data/dla-needed.txt
diff options
context:
space:
mode:
authorUtkarsh Gupta <utkarsh@debian.org>2021-03-01 02:23:37 +0530
committerUtkarsh Gupta <utkarsh@debian.org>2021-03-01 02:24:54 +0530
commit2b47278608d63a5eb8224602cc3b6563fad7da7a (patch)
tree2176546abdc500a293af5f9bce9873598476ff57 /data/dla-needed.txt
parentcf532ec958e2d0f43963b18e72ade53fd83715c1 (diff)
Triage spip for stretch
Diffstat (limited to 'data/dla-needed.txt')
-rw-r--r--data/dla-needed.txt4
1 files changed, 4 insertions, 0 deletions
diff --git a/data/dla-needed.txt b/data/dla-needed.txt
index 74f9e24ec6..3c9fdec5cc 100644
--- a/data/dla-needed.txt
+++ b/data/dla-needed.txt
@@ -113,6 +113,10 @@ shiro
NOTE: 20201004: Sent additional request to upstream dev list; stil no response. (roberto)
NOTE: 20201220: Upstream has responded. Working with them to backport fixes. (roberto)
--
+spip
+ NOTE: 20210228: maintainer doesn't want to work on this update. (utkarsh)
+ NOTE: 20210228: a DSA is already out; check against the patch uploaded. (utkarsh)
+--
spotweb
NOTE: 20201220: The affected code uses string concatenation to construct a SQL query.
NOTE: 20201220: Upstream's "fix" is to blacklist all the "bad" SQL commands. (roberto)

© 2014-2024 Faster IT GmbH | imprint | privacy policy