From 5547e2c559fa652eb7c93ab1b5b589c7b9d550a8 Mon Sep 17 00:00:00 2001 From: Philip Hazel Date: Fri, 30 Jun 2006 13:57:46 +0000 Subject: Change ${quote_pgsql to quote ' as '' instead of \' because of a security issue. --- doc/doc-txt/ChangeLog | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-) (limited to 'doc/doc-txt/ChangeLog') diff --git a/doc/doc-txt/ChangeLog b/doc/doc-txt/ChangeLog index 348c279a1..ea9472d2b 100644 --- a/doc/doc-txt/ChangeLog +++ b/doc/doc-txt/ChangeLog @@ -1,4 +1,4 @@ -$Cambridge: exim/doc/doc-txt/ChangeLog,v 1.363 2006/06/28 16:00:23 ph10 Exp $ +$Cambridge: exim/doc/doc-txt/ChangeLog,v 1.364 2006/06/30 13:57:46 ph10 Exp $ Change log file for Exim from version 4.21 ------------------------------------------- @@ -56,6 +56,11 @@ PH/06 Added acl_not_smtp_start, based on Johannes Berg's patch, and set the bit to forbid control=suppress_local_fixups in the acl_not_smtp ACL, because it is too late at that time, and has no effect. +PH/07 Changed ${quote_pgsql to quote ' as '' instead of \' because of a + security issue with \' (bugzilla #107). I could not use the + PQescapeStringConn() function, because it needs a PGconn value as one of + its arguments. + Exim version 4.62 ----------------- -- cgit v1.2.3