[SECURITY] [DSA 532-1] New libapache-mod-ssl packages fix multiple vulnerabilities

2004-07-22 Thread Matt Zimmerman
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA 532-1 [EMAIL PROTECTED] http://www.debian.org/security/ Matt Zimmerman July 22nd, 2004

[SECURITY] [DSA 534-1] New mailreader packages fix directory traversal vulnerability

2004-07-22 Thread Matt Zimmerman
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA 534-1 [EMAIL PROTECTED] http://www.debian.org/security/ Matt Zimmerman July 22nd, 2004

[SECURITY] [DSA 533-1] New courier packages fix cross-site scripting vulnerability

2004-07-22 Thread Matt Zimmerman
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA 533-1 [EMAIL PROTECTED] http://www.debian.org/security/ Matt Zimmerman July 22nd, 2004

Re: mod_ssl 2.8.19 for Apache 1.3.31

2004-07-22 Thread Javier Fernández-Sanguino Peña
On Wed, Jul 21, 2004 at 11:05:45AM +0200, Peter Holm wrote: On Tue, 20 Jul 2004 13:10:08 +0200, Peter Holm [EMAIL PROTECTED] wrote: Please point me to a website where all the things, that you mentioned, are explained in detail and what exactly volunteers can do to help the security team, so

Ihre Anfrage: Support-JOB 14077 -- WG: [EMAIL PROTECTED]: [SECURITY] [DSA 531-1] New php4 packages fix multiple vulnerabilities]

2004-07-22 Thread ET Support
Guten Tag, wir haben Ihre Anfrage erhalten und bearbeiten diese schnellstmoeglich. Folgende Informationen wurden erfasst: Bearbeitungs-Nr:14077 Subject:WG: [EMAIL PROTECTED]: [SECURITY] [DSA 531-1] New php4 packages fixmultiple vulnerabilities]

Re: Ihre Anfrage: Support-JOB 14077 -- WG: [EMAIL PROTECTED]: [SECURITY] [DSA 531-1] New php4 packages fix multiple vulnerabilities]

2004-07-22 Thread Lupe Christoph
Hallo! Wenn Ihr schon Mailinglisten direkt in Euer WSupportsystem fuettert, sorgt bitte dafuer, dass keine automatisch generierten Antworten an die Mailingliste gehen. Ihr koenntet sonst von erzuernten Leserder mailingliste Zupportanfrage zu Kernelbinaries erhalten... Also baut das lieber bald

Re: FWD: Squirrelmail XSS + SQL security bug?

2004-07-22 Thread Thijs Kinkhorst
Hello People, I'm part of the SquirrelMail development team and have assisted Jeroen in preparing the recent upload of a new SquirrelMail package. Let me comment on some of the issues raised. First off, Debian is using an archaic version of SquirrelMail, being more than two years old (which