obsolete.ChilliProject/extra
Holger Just 5e171001bc [#709] Fix cache poisoning vector if credential caching is enabled.
The cache did not distinguish between cached credentials for read and write
access. As it does not check permissions again if there is a cache hit, users
with authorization for either reading or writing could poison the cache and
subsequently authorize themselves for both access types.

Original fix is by Jean-Philippe Lang, http://www.redmine.org/issues/9567
2011-11-30 20:29:58 +01:00
..
mail_handler Set source encoding to UTF-8 2011-10-29 14:48:03 +02:00
sample_plugin Set source encoding to UTF-8 2011-10-29 14:48:03 +02:00
svn [#709] Fix cache poisoning vector if credential caching is enabled. 2011-11-30 20:29:58 +01:00