Accepted squirrelmail 2:1.4.8-1ubuntu0.1 (source)
Ubuntu Installer
archive at ubuntu.com
Wed May 16 14:55:10 BST 2007
Accepted:
OK: squirrelmail_1.4.8-1ubuntu0.1.dsc
-> Component: universe Section: web
OK: squirrelmail_1.4.8-1ubuntu0.1.diff.gz
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Tue, 15 May 2007 18:49:35 -0600
Source: squirrelmail
Binary: squirrelmail
Architecture: source
Version: 2:1.4.8-1ubuntu0.1
Distribution: edgy-security
Urgency: low
Maintainer: Jeroen van Wolffelaar <jeroen at wolffelaar.nl>
Changed-By: Leonel Nunez <leonel at enelserver.com>
Description:
squirrelmail - Webmail for nuts
Changes:
squirrelmail (2:1.4.8-1ubuntu0.1) edgy-security; urgency=low
.
* SECURITY UPDATE: XSS and CSRF in various areas
* src/compose.php, src/right_main.php, src/login.php, src/mailto.php,
src/redirect.php, src/webmail.php, src/mime.php: back-ported fixes for
XSS in compose, draft and HTML mail. (CVE-2006-6142)
http://www.squirrelmail.org/security/issue/2006-12-02
* fuctions/mime.php, src/compose.php, src/view_text.php: back-ported fixes
for XSS in HTML filter (CVE-2007-1262)
http://www.squirrelmail.org/security/issue/2007-05-09
Files:
2bbf36cf3d23a2b45f6ec6580ff257ad 687 web optional squirrelmail_1.4.8-1ubuntu0.1.dsc
ba543b9e0b70c3fc505616f4f19dbe08 25779 web optional squirrelmail_1.4.8-1ubuntu0.1.diff.gz
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFGSoGbH/9LqRcGPm0RAjhOAJoCFJny2ReUHh1aX52Z6sS4F6kfwACgiSYf
F/yRGwgUnmFC9DJhQruTy34=
=7gDd
-----END PGP SIGNATURE-----
More information about the edgy-changes
mailing list