severity 504283 serious thanks Hi,
I don't see a possibility to exploit this specific vulnerability in egroupware, because it is triggered when using the Sendmail backend, and there is no way to set this backend. Still, this doesn't excuse the shipping of a copy of libphp-phpmailer inside the package, which should be easy to fix for lenny and prevent these kinds of issues to pop up during the stable lifetime. cheers, Thijs -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]