Gentoo: phpbb SQL injection vulnerability
Summary
GENTOO LINUX SECURITY ANNOUNCEMENT 200306-15
quote from cve: "SQL injection vulnerability in viewtopic.php for phpBB 2.0.5 and earlier allows remote attackers to steal password hashes via the topic_id parameter."
SOLUTION
It is recommended that all Gentoo Linux users who are running net-www/phpbb upgrade to phpbb-2.0.5 as follows
emerge sync emerge phpbb emerge clean
aliz@gentoo.org - GnuPG key is available at robbat2@gentoo.org
Resolution
References
Availability
Concerns
Background