Описание
ELSA-2013-0126: squirrelmail security and bug fix update (LOW)
[1.4.8-21.0.2.el5]
- remove Redhat splash screen images from source
[1.4.8-21.0.1.el5]
- remove Redhat splash screen images
- add README instead of README.RedHat
[1.4.8-21]
- change charset for zh_CN and zh_TW to utf-8 (#508686)
[1.4.8-20]
- fix header encoding issue (#241861)
- fix code producing warnings in the log (#475188)
[1.4.8-19]
- patch for CVE-2010-2813 modified wrong file (#808598)
- correct requirement is mod_php not php (#789353)
- comply with RFC2822 line length limits (#745469)
- document that SELinux boolean httpd_can_sendmail needs to be turned on (#745380)
- add support for big UIDs on 32bit machines (#450780)
- do not corrupt html attachments (#359791)
Обновленные пакеты
Oracle Linux 5
Oracle Linux ia64
squirrelmail
1.4.8-21.0.2.el5
Oracle Linux x86_64
squirrelmail
1.4.8-21.0.2.el5
Oracle Linux i386
squirrelmail
1.4.8-21.0.2.el5
Связанные CVE
Связанные уязвимости
functions/imap_general.php in SquirrelMail, as used in Red Hat Enterprise Linux (RHEL) 4 and 5, does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP login attempts with different usernames, leading to the creation of many preference files. NOTE: this issue exists because of an incorrect fix for CVE-2010-2813.
functions/imap_general.php in SquirrelMail, as used in Red Hat Enterprise Linux (RHEL) 4 and 5, does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP login attempts with different usernames, leading to the creation of many preference files. NOTE: this issue exists because of an incorrect fix for CVE-2010-2813.
functions/imap_general.php in SquirrelMail, as used in Red Hat Enterprise Linux (RHEL) 4 and 5, does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP login attempts with different usernames, leading to the creation of many preference files. NOTE: this issue exists because of an incorrect fix for CVE-2010-2813.
functions/imap_general.php in SquirrelMail, as used in Red Hat Enterpr ...
functions/imap_general.php in SquirrelMail, as used in Red Hat Enterprise Linux (RHEL) 4 and 5, does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP login attempts with different usernames, leading to the creation of many preference files. NOTE: this issue exists because of an incorrect fix for CVE-2010-2813.