[Bug 375513] [NEW] Multiple CVEs for Squirrelmail <1.4.17

Leonel Nunez leonel at enelserver.com
Tue May 12 15:46:25 UTC 2009


Public bug reported:

CSS positioning vulnerability   CVE-2009-1581
Session fixation vulnerability   CVE-2009-1580
Server-side code injection in map_yp_alias username map 	CVE-2009-1579
Cross site scripting issues in decrypt_headers.php CVE-2009-1578
Multiple cross site scripting issues   CVE-2009-1578

** Affects: squirrelmail (Ubuntu)
     Importance: Undecided
         Status: New

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2009-1581

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2009-1580

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2009-1579

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2009-1578

-- 
Multiple CVEs for Squirrelmail  <1.4.17
https://bugs.launchpad.net/bugs/375513
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs at lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs




More information about the universe-bugs mailing list