From 917742da8c7140beb433d08c19dbefbcdc5ecd04 Mon Sep 17 00:00:00 2001 From: "justdave%syndicomm.com" Date: Fri, 27 Apr 2001 19:32:27 +0000 Subject: [PATCH] addition to 2.12 release notes git-svn-id: svn://10.0.0.236/trunk@93282 18797224-902f-48f8-a5cc-f745e15eee43 --- mozilla/webtools/bugzilla/docs/rel_notes.txt | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/mozilla/webtools/bugzilla/docs/rel_notes.txt b/mozilla/webtools/bugzilla/docs/rel_notes.txt index 4def4caf37f..81807ef4f4c 100644 --- a/mozilla/webtools/bugzilla/docs/rel_notes.txt +++ b/mozilla/webtools/bugzilla/docs/rel_notes.txt @@ -60,6 +60,10 @@ bugzilla.mozilla.org. middle. (bug 29820) +- Some security holes have been fixed where shell escape characters + could be passed to Bugzilla, allowing remote users to execute + system commands on the web server. + *** Other changes of note *** - Bug titles now appear in the page title, and will hence