[VIM] Vendor ACK (diffs) for old Plogger issue - CVE-2005-4246

Steven M. Christey coley at mitre.org
Wed May 3 00:13:55 EDT 2006


While researching the newer Plogger issues, a CVE analyst found the
following diff:

http://masendav.com/~duke/PloggerChanges_files/FileComparisonReport5.html

gallery.php was modified to use intval() on both id and page
parameters.  The file change was also on Dec 14, a day after r0t's
original bug report.

- Steve


More information about the VIM mailing list