Debian Security Advisory 1389-2 – It was discovered that zoph, a web based photo management system, performs insufficient input sanitizing, which allows SQL injection. This is an updated advisory to make the update for oldstable (sarge) available, which had been uploaded to the wrong suite.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/60419/dsa-1389-2.txt
Source: https://packetstormsecurity.com/files/60419/Debian-Linux-Security-Advisory-1389-2.html