Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Mageia: MGASA-2018-0357 Moderate: SquirrelMail XSS Security Issue

mageia
Calendar Grey August 31, 2018
Dist Mageia Esm H88
The recent squirrelmail updates address an XSS vulnerability in Mageia 6 that impacts specific HTML tags. Check the advisory for complete details.
Updated squirrelmail packages fix XSS-security vulnerability: It was discovered that some special tags have not been filtered accordingly which can be used for an XSS-attack

Summary

Updated squirrelmail packages fix XSS-security vulnerability: It was discovered that some special tags have not been filtered accordingly which can be used for an XSS-attack.

References

- https://bugs.mageia.org/show_bug.cgi?id=23366

-

- https://www.openwall.com/lists/oss-security/2018/07/26/2

Resolution

SRPMS

- 6/core/squirrelmail-1.4.22-15.2.mga6

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 31 Aug 2018
URL: https://advisories.mageia.org/MGASA-2018-0357.html
Type: security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here