UbuntuUpdates.org

Package "squirrelmail"

Name: squirrelmail

Description:

Webmail for nuts

Latest version: 2:1.4.23~svn20120406-2+deb8u3ubuntu0.16.04.2
Release: xenial (16.04)
Level: updates
Repository: universe
Homepage: http://www.squirrelmail.org/

Links


Download "squirrelmail"


Other versions of "squirrelmail" in Xenial

Repository Area Version
base universe 2:1.4.23~svn20120406-2ubuntu1
security universe 2:1.4.23~svn20120406-2+deb8u3ubuntu0.16.04.2

Changelog

Version: 2:1.4.23~svn20120406-2+deb8u1ubuntu0.16.04.1 2017-05-22 18:06:41 UTC

  squirrelmail (2:1.4.23~svn20120406-2+deb8u1ubuntu0.16.04.1) xenial-security; urgency=medium

  * SECURITY UPDATE: post-auth remote code execution
    - debian/patches/CVE-2017-7692.patch: perform escaping on input
      (thanks to debian)
    - CVE-2017-7692

 -- Steve Beattie <email address hidden> Fri, 19 May 2017 15:28:31 -0700

Source diff to previous version
CVE-2017-7692 SquirrelMail 1.4.22 (and other versions before 20170427_0200-SVN) allows post-authentication remote code execution via a sendmail.cf file that is mis

Version: 2:1.4.23~svn20120406-2ubuntu1.16.04.1 2016-12-12 23:07:04 UTC

  squirrelmail (2:1.4.23~svn20120406-2ubuntu1.16.04.1) xenial; urgency=medium

  * debian/patches/php7_remove_e_modifier_preg_replace: Remove use of
    deprecated /e modifier in preg_replace. Thanks to Thijs Kinkhorst
    <email address hidden>. Closes LP: #1636333.

 -- Nishanth Aravamudan <email address hidden> Mon, 28 Nov 2016 16:31:02 -0800

1636333 Squirrelmail - missing Subject/Body on some messages in 16.04



About   -   Send Feedback to @ubuntu_updates