Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Mageia: 2018-0463 Moderate: Roundcube XSS Fix and PHP Compatibility

mageia
Calendar Grey November 21, 2018
Dist Mageia Esm H88
The latest upgrade from Mageia for Roundcube addresses security vulnerabilities linked to XSS and enhances its compatibility with PHP 7.3 along with various other platforms.
This is a service release to update the stable version 1.3 of Roundcube Webmail

Summary

This is a service release to update the stable version 1.3 of Roundcube Webmail. It contains fixes to several bugs backported from the master branch including a security fix for a reported XSS vulnerability (in handling invalid style tag content) plus updates to ensure compatibility with PHP 7.3 and recent versions of Courier-IMAP, Dovecot and MySQL 8

References

- https://bugs.mageia.org/show_bug.cgi?id=23826

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/56EUDX57TIX42ULN63ZD6HCOX5PLNOZJ/

Resolution

SRPMS

- 6/core/roundcubemail-1.3.8-1.mga6

Publication date: 21 Nov 2018
URL: https://advisories.mageia.org/MGASA-2018-0463.html
Type: security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here