Updated squirrelmail packages fix CVE-2018-8741
Publication date: 30 Mar 2018Modification date: 30 Mar 2018
Type: security
Affected Mageia releases : 5 , 6
CVE: CVE-2018-8741
Description
Updated squirrelmail packages fix security vulnerabilities: Filenames of attachment files are not sanitized, so attackers could read arbitrary files. (CVE-2018-8741)
References
SRPMS
5/core
- squirrelmail-1.4.22-12.3.mga5
6/core
- squirrelmail-1.4.22-15.1.mga6