Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Debian: DSA-2889-1 Moderate: SQL Injection In Postfixadmin Resolved

debian
Calendar Grey March 28, 2014
Debian Logo
Enhance PostfixAdmin's security by upgrading it to address SQL injection vulnerabilities on Debian platforms. Regularly apply patches and monitor dependencies to ensure robust protection.
An SQL injection vulnerability was discovered in postfixadmin, a web administration interface for the Postfix Mail Transport Agent, which allowed authenticated users to make arbitr...

Summary

The oldstable distribution (squeeze) does not contain postfixadmin.

For the stable distribution (wheezy), this problem has been fixed in
version 2.3.5-2+deb7u1.

For the testing distribution (jessie), and unstable distribution
(sid), this problem has been fixed in version 2.3.5-3.

We recommend that you upgrade your postfixadmin packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: http://www.debian.org/security/



Package: postfixadmin
CVE ID: CVE-2014-2655

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here