Bug 464185 - CVE-2008-3663 Squirrelmail session hijacking [F9]
Summary: CVE-2008-3663 Squirrelmail session hijacking [F9]
Keywords:
Status: CLOSED CURRENTRELEASE
Alias: None
Product: Fedora
Classification: Fedora
Component: squirrelmail
Version: 9
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Michal Hlavinka
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks: CVE-2008-3663
TreeView+ depends on / blocked
 
Reported: 2008-09-26 15:46 UTC by Josh Bressers
Modified: 2008-10-23 16:35 UTC (History)
1 user (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2008-10-01 13:48:52 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)

Description Josh Bressers 2008-09-26 15:46:29 UTC
F9 tracking bug: see blocks bug list for full details of the security issue(s).



[bug automatically created by: add-tracking-bugs]

Comment 1 Josh Bressers 2008-09-26 15:46:33 UTC
You can eventually use the following link to create the update request: 
https://admin.fedoraproject.org/updates/new/request=Stabletype=securityrelease=Fedora%209&bugs=464185

Comment 2 Fedora Update System 2008-10-01 13:42:22 UTC
squirrelmail-1.4.16-1.fc9 has been submitted as an update for Fedora 9.
http://admin.fedoraproject.org/updates/squirrelmail-1.4.16-1.fc9

Comment 3 Michal Hlavinka 2008-10-01 13:48:52 UTC
fixed in squirrelmail-1.4.16-1.fc9

Comment 4 Fedora Update System 2008-10-23 16:35:42 UTC
squirrelmail-1.4.16-1.fc9 has been pushed to the Fedora 9 stable repository.  If problems still persist, please make note of it in this bug report.


Note You need to log in before you can comment on or make changes to this bug.