Arch Linux

Please read this before reporting a bug:
https://wiki.archlinux.org/title/Bug_reporting_guidelines

Do NOT report bugs when a package is just outdated, or it is in the AUR. Use the 'flag out of date' link on the package page, or the Mailing List.

REPEAT: Do NOT report bugs for outdated packages!
Tasklist

FS#2658 - Squirrelmail Vulnerability Problem

Attached to Project: Arch Linux
Opened by Gregory (gszczesz) - Tuesday, 26 April 2005, 22:56 GMT
Last edited by Dale Blount (dale) - Wednesday, 27 April 2005, 02:59 GMT
Task Type Bug Report
Category Packages: Extra
Status Closed
Assigned To Paul Mattal (paul)
Architecture not specified
Severity Critical
Priority Normal
Reported Version 0.7 Wombat
Due in Version Undecided
Due Date Undecided
Percent Complete 0%
Votes 0
Private No

Details

My system just got hacked into through Squirrelmail 1.5.1cvs. Squirrelmail 1.4.3a and 1.5.1cvs (before October 2004) have this vulnerability, which has been fixed in 1.4.4 and the newest 1.5.1cvs versions. Please update.
This task depends upon

Closed by  Paul Mattal (paul)
Saturday, 30 April 2005, 22:20 GMT
Reason for closing:  Fixed
Additional comments about closing:  I upgraded to the most current devel snapshot of 1.5.1. Will also make a note to Eric to consider using snapshot date in pkgrel so we can track this more consciously next time.

Loading...