Bug#415117: [pkg-horde] Bug#415117: imp4: XSS vulnerability in search screen and thread view

Marcos Marado Marcos.Marado at sonae.com
Thu Mar 22 14:07:07 UTC 2007


> Ola Lundqvist <opal at debian.org> wrote:
>
> Interesting! Will you create a fix for this?

I took from the diff between imp-h3-4.1.4-rc1 and imp-h3-4.1.4 a working patch 
to fix the XSS vulnerability. I'm not really sure if I should submit a patch 
that would work against imp4_4.1.3-2 (in etch) or against imp4_4.1.3-3 (in 
sid)... Well, probably it will work against both. I'll send the patch after 
lunch.

Best regards,
-- 
Marcos Marado
Sonaecom IT




More information about the pkg-horde-hackers mailing list