Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Squirrelmail archive compromission and version 1.4.9a-2 (in etch)

From: Emmanuel Halbwachs <Emmanuel.Halbwachs(at)obspm.fr>
Date: Mon Dec 17 2007 - 11:52:02 EST


Hello everybody,

We run squirrelmail as our production webmail for ~ 1k users.

Now we can see that the squirrelmail team has discovered that 1.4.11 have also been compromised.

A colleague on another list points out the fact that they have removed from the download archive all versions from 1.4.9 to 1.4.12.

If there is suspicion on 1.4.9, I guess we can suspect the version currently in etch.

Can somebody (maybe Thijs Kinkhorst who is a Debian Developper and apparently member of the squirrelmail team) enlight us on this subject, please?

TIA,
--

Emmanuel Halbwachs

Resp. Réseau/Sécurité                    Observatoire de Paris-Meudon
tel      : (+33)1 45 07 75 54                   5 Place Jules Janssen
fax      : (+33)1 45 07 76 13                    F 92195 MEUDON CEDEX

--

To UNSUBSCRIBE, email to debian-security-REQUEST@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org Received on Mon Dec 17 12:17:51 2007

Do you need help?X

This archive was generated by hypermail 2.1.8 : Wed Mar 19 2008 - 06:54:35 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library