[SM-USERS] Bug Report

2004-05-29 Thread Security
I subscribe to the squirrelmail-users mailing list.
  [ ]  True - No need to CC me when replying
  [X]  False - Please CC me when replying

This bug occurs when I ...
  ... view a particular message
  ... use a specific plugin/function
  ... try to do/view/use 



The description of the bug:

Some mail does not open properly.  It will sit there and refresh itself
over and over and open only part of the mail, then refresh again.

This is not an isolated incident.  I have had this problem with 3 other
users on 3 different Linux servers at 3 different sites.


I can reproduce the bug by:


(Optional) I got bored and found the bug occurs in:


(Optional) I got really bored and here's a fix:


--

My browser information:
  Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0)
  get_browser() information (List)
* Nothing listed

My web server information:
  PHP Version 4.3.4
  PHP Extensions (List)
* 0 = xml
* 1 = tokenizer
* 2 = standard
* 3 = session
* 4 = posix
* 5 = pcre
* 6 = overload
* 7 = mysql
* 8 = ctype
* 9 = apache

SquirrelMail-specific information:
  Version:  1.4.3 [CVS]
  Plugins (List)
* 0 = info
* 1 = todo
* 2 = view_as_html
* 3 = html_mail
* 4 = translate
* 5 = files
* 6 = squirrelspell
* 7 = filters
* 8 = calendar
* 9 = virus_scan
* 10 = bug_report
* 11 = autocomplete
* 12 = newmail
* 13 = administrator
* 14 = unsafe_image_rules
* 15 = sent_confirmation
* 16 = abook_take
* 17 = compatibility
* 18 = smallcal
* 19 = sent_subfolders
* 20 = mail_fetch
* 21 = listcommands
* 22 = message_details
* 23 = delete_move_next
* 24 = weather
* 25 = windows
* 26 = templates
* 27 = pupdate
* 28 = archive_mail
* 29 = block_attach
* 30 = custom_from
* 31 = msg_flags

My IMAP server information:
  Server type:  other
  Server info:  * OK [HIDDEN] IMAP4REV1 LOGIN-REFERRALS STARTTLS
AUTH=LOGIN] localhost IMAP4rev1 2001.315 at Thu, 27 May 2004 10:56:47
-0700 (MST)
  Cabailities:  IMAP4REV1 IDLE NAMESPACE MAILBOX-REFERRALS SCAN SORT
THREAD=REFERENCES THREAD=ORDEREDSUBJECT MULTIAPPEND LOGIN-REFERRALS
STARTTLS AUTH=LOGIN



---
This SF.Net email is sponsored by: Oracle 10g
Get certified on the hottest thing ever to hit the market... Oracle 10g. 
Take an Oracle 10g class now, and we'll give you the exam FREE.
http://ads.osdn.com/?ad_id=3149&alloc_id=8166&op=click
--
squirrelmail-users mailing list
List Address: [EMAIL PROTECTED]
List Archives:  http://sourceforge.net/mailarchive/forum.php?forum_id=2995
List Info: https://lists.sourceforge.net/lists/listinfo/squirrelmail-users


[SM-USERS] CVE-2017-7692 and Security Scanner

2017-05-03 Thread security
Hello,

our university uses a security scanner to check for outdated and 
insecure software.
The scanner recently noticed, that squirrel mail was vulnerable for 
CVE-2017-7692.
According to your Changelog, this CVE has been fixed on April, 25.

The security scanner has not been able to recognize, that you fixed the CVE,
because it can only check the Version string of squirrelmail.

Is it possible, that you increase the minor Version each time a CVE is 
fixed,
so security scanners will be able to detect, if a version is installed, 
where the CVE is fixed?

Sincerly

Frank Knoben

RWTH Aachen
Germany


--
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
-
squirrelmail-users mailing list
Posting guidelines: http://squirrelmail.org/postingguidelines
List address: squirrelmail-users@lists.sourceforge.net
List archives: http://news.gmane.org/gmane.mail.squirrelmail.user
List info (subscribe/unsubscribe/change options): 
https://lists.sourceforge.net/lists/listinfo/squirrelmail-users