|
|
Log in / Subscribe / Register

quassel: SQL injection

Package(s):quassel CVE #(s):CVE-2015-3427
Created:May 1, 2015 Updated:May 6, 2015
Description: From the Mageia advisory:

Quassel is vulnerable to SQL injection through its use of Qt's postgres driver. If the PostgreSQL server is restarted or the connection is lost at any point, other IRC users may be able to trick the Quassel core into executing SQL queries upon reconnection.

Alerts:
Debian DSA-3258-1 quassel 2015-05-12
Mageia MGASA-2015-0175 quassel 2015-04-30
openSUSE openSUSE-SU-2015:0933-1 quassel 2015-05-24

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds