Get a Pentest and security assessment of your IT network.

Advisories

Mandriva Linux Security Advisory 2009-053

Mandriva Linux Security Advisory 2009-053 – Squirrelmail 1.4.15 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie. Additionally many of the bundled plugins has been upgraded. The localization has also been upgraded. Basically this is a syncronization with the latest squirrelmail package found in Mandriva Cooker. The rpm changelog will reveal all the changes. The updated packages have been upgraded to the latest version of squirrelmail to prevent this.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/75165/MDVSA-2009-053.txt

Source: https://packetstormsecurity.com/files/75165/Mandriva-Linux-Security-Advisory-2009-053.html

Related posts
Advisories

57657.html

Advisories

Secunia Security Advisory 17317

Advisories

Ubuntu Security Notice 284-1

Advisories

Hardened-PHP Project Security Advisory 2006-14.139