This bug was fixed in the package squirrelmail - 2:1.4.13-2ubuntu1.1
---------------
squirrelmail (2:1.4.13-2ubuntu1.1) hardy-security; urgency=low
* SECURITY UPDATE: cross site scripting issue in the HTML filter
(CVE-2008-2379). LP: #306536.
- functiions/mime.php: from the debian package version 1.4.15-4.
-- Reinhard Tartler <[email protected]> Tue, 09 Dec 2008 14:58:07
+0100
** Changed in: squirrelmail (Ubuntu Hardy)
Status: Fix Committed => Fix Released
** Changed in: squirrelmail (Ubuntu Intrepid)
Status: Fix Committed => Fix Released
--
CVE-2008-2379 insufficient input sanitising
https://bugs.launchpad.net/bugs/306536
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
--
universe-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/universe-bugs