Bug 202677

Summary: CVE-2006-4019 Squirrelmail authenticated user variable overwriting
Product: [Fedora] Fedora Reporter: Mark J. Cox <mjc>
Component: squirrelmailAssignee: Warren Togami <wtogami>
Status: CLOSED RAWHIDE QA Contact:
Severity: medium Docs Contact:
Priority: medium    
Version: 6CC: wtogami
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard: source=squirrelmail,reported=20060811,public=20060811,impact=moderate
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2006-08-16 08:23:46 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Mark J. Cox 2006-08-15 20:18:56 UTC
For FC6

+++ This bug was initially created as a clone of Bug #202196 +++

Squirrelmail authenticated user variable overwriting

A bug was fixed in squirrelmail 1.4.8 which could allow a logged in
user to overwrite random variables in compose.php with arbitrary data.
This may allow a user to read or write another users preferences or
mail attachments.

More information can be found here:
http://www.squirrelmail.org/security/issue/2006-08-11

-- Additional comment from updates.com on 2006-08-15 12:40 EST --
squirrelmail-1.4.8-1.fc5 has been pushed for fc5, which should resolve this
issue.  If these problems are still present in this version, then please make
note of it in this bug report.

Comment 1 Warren Togami 2006-08-15 21:48:51 UTC
1.4.8 was pushed for FC6 a few days ago, is there a different issue?


Comment 2 Mark J. Cox 2006-08-16 08:23:46 UTC
No, it means test2 didn't contain a fixed version.  Marking fixed "rawhide"