[Openvas-commits] r13143 - in trunk/openvas-manager: . src

scm-commit at wald.intevation.org scm-commit at wald.intevation.org
Tue Mar 27 14:12:30 CEST 2012


Author: mattm
Date: 2012-03-27 14:12:30 +0200 (Tue, 27 Mar 2012)
New Revision: 13143

Modified:
   trunk/openvas-manager/ChangeLog
   trunk/openvas-manager/src/manage_sql.c
Log:
	* src/manage_sql.c (set_task_parameter): Pass quoted value to sql instead
	of original.

Modified: trunk/openvas-manager/ChangeLog
===================================================================
--- trunk/openvas-manager/ChangeLog	2012-03-27 11:19:51 UTC (rev 13142)
+++ trunk/openvas-manager/ChangeLog	2012-03-27 12:12:30 UTC (rev 13143)
@@ -1,5 +1,10 @@
 2012-03-27  Matthew Mundell <matthew.mundell at greenbone.net>
 
+	* src/manage_sql.c (set_task_parameter): Pass quoted value to sql instead
+	of original.
+
+2012-03-27  Matthew Mundell <matthew.mundell at greenbone.net>
+
 	* src/omp.c (omp_xml_handle_text): Correct CLIENT_C_C_GCR_CONFIG_COMMENT
 	variable name.  The was causing the comment of imported configs to come
 	out empty.

Modified: trunk/openvas-manager/src/manage_sql.c
===================================================================
--- trunk/openvas-manager/src/manage_sql.c	2012-03-27 11:19:51 UTC (rev 13142)
+++ trunk/openvas-manager/src/manage_sql.c	2012-03-27 12:12:30 UTC (rev 13143)
@@ -20561,7 +20561,7 @@
     {
       gchar* quote = sql_nquote (value, strlen (value));
       sql ("UPDATE tasks SET comment = '%s' WHERE ROWID = %llu;",
-           value,
+           quote,
            task);
       g_free (quote);
     }



More information about the Openvas-commits mailing list