MSA-11-0038: Database injection protection strengthened

MSA-11-0038: Database injection protection strengthened

by Michael de Raadt -
Number of replies: 0
Topic: Magic quotes hardening of 1.9
Severity: Serious
Versions affected: < 1.9.14 (2.x not affected)
Reported by: Petr Škoda
Issue no.: MDL-29033
Solution: upgrade to 1.9.14
Changes (1.9): http://git.moodle.org/gw?p=moodle.git;a=commitdiff;h=bf0ddcb332998e14b2deeb2fff1e7e6849ce65d6

Description:

Filtering has been added to various DB functions to avoid unanticipated injection threats.