summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorDries Buytaert <dries@buytaert.net>2007-09-03 16:55:00 +0000
committerDries Buytaert <dries@buytaert.net>2007-09-03 16:55:00 +0000
commitd33f3df967e6c83f4484518d076b2da33acb6794 (patch)
tree39f0b894010229352ffaa12d4f8995eb6b5b960c
parent6fa344f5b19fa183b822397513fa8b0cd8537f15 (diff)
downloadbrdo-d33f3df967e6c83f4484518d076b2da33acb6794.tar.gz
brdo-d33f3df967e6c83f4484518d076b2da33acb6794.tar.bz2
- Patch #165160 by chx: restored access checking.
-rw-r--r--includes/bootstrap.inc2
1 files changed, 1 insertions, 1 deletions
diff --git a/includes/bootstrap.inc b/includes/bootstrap.inc
index bcf94f7ea..023e9e97a 100644
--- a/includes/bootstrap.inc
+++ b/includes/bootstrap.inc
@@ -828,7 +828,7 @@ function drupal_is_denied($type, $mask) {
// (allowed).
// The use of ORDER BY / LIMIT is more efficient than "MAX(status) = 0"
// in PostgreSQL <= 8.0.
- return (bool) db_result(db_query_range("SELECT CASE WHEN status=1 THEN 0 ELSE 1 END FROM {access} WHERE type = '%s' AND LOWER(mask) LIKE LOWER('%s') ORDER BY status DESC", $type, $mask, 0, 1));
+ return (bool) db_result(db_query_range("SELECT CASE WHEN status=1 THEN 0 ELSE 1 END FROM {access} WHERE type = '%s' AND LOWER('%s') LIKE LOWER(mask) ORDER BY status DESC", $type, $mask, 0, 1));
}
/**