Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 544
Alerts This Week
Warning Icon 1 544

Gentoo Linux GLSA-200406-11: Normal Threat in Horde-IMP Input Issue

gentoo
Calendar Grey June 16, 2004
Scroller Gentoo
An input validation vulnerability in Horde-IMP permits unauthorized script execution via specially designed emails. Immediate upgrade is advised.
An input validation vulnerability has been discovered in Horde-IMP.

Summary

Gentoo Linux Security Advisory GLSA 200406-11 https://security.gentoo.org/ Severity: Normal Title: Horde-IMP: Input validation vulnerability Date: June 16, 2004 Bugs: #53862 ID: 200406-11

Synopsis ======= An input validation vulnerability has been discovered in Horde-IMP.
Background ========= Horde-IMP is the Internet Messaging Program. It is written in PHP and provides webmail access to IMAP and POP3 accounts.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-www/horde-imp <= 3.2.3 >= 3.2.4
========== Horde-IMP fails to properly sanitize email messages that contain malicious HTML or script code.
Impact ===== By enticing a user to read a specially...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround