Skip to content

Debian Changelog squirrelmail (2:1.5.1-5)

2007

squirrelmail (2:1.5.1-5) experimental; urgency=high

   * High-urgency upload to fix a security bug.
   * Fix magicHTML filter for XSS [CVE-2007-1262]

 -- Thijs Kinkhorst <thijs@debian.org>  Thu, 10 May 2007 13:23:26 +0200

2006

squirrelmail (2:1.5.1-4) experimental; urgency=high

   * High-urgency upload to fix a security bug.
   * Update to cross site scripting security fix, only
     for IE <= 5.

 -- Thijs Kinkhorst <thijs@debian.org>  Mon, 4 Dec 2006 11:34:48 +0100

squirrelmail (2:1.5.1-3) experimental; urgency=high

   * High-urgency upload to fix a security bug.
   * Cross site scripting security fix [CVE-2006-6142].
   * Internet Explorer security issue workaround.

 -- Thijs Kinkhorst <thijs@debian.org>  Sat, 2 Dec 2006 18:36:44 +0100

squirrelmail (2:1.5.1-2) experimental; urgency=high

   * High-urgency upload to fix a security bug.
   * CVE-2006-4019: Variable overwriting in compose.php.

 -- Thijs Kinkhorst <thijs@debian.org>  Wed, 9 Aug 2006 21:53:16 +0200

squirrelmail (2:1.5.1-1) experimental; urgency=low

   * Upstream development release targeted at experimental (Closes: #354331).
   * To be absolutely clear: both upstream and Debian do not provide
     guarantees for this branch, but we welcome bugreports.
 
   * Remove legacy pre-sarge handling code.
   * Drop patches that have been integrated upstream.
   * Fixes Debian bugs and wishlists:
     + Date-formatting setting in confusing place (Closes: #276159).
     + Header-escaped comma's inproperly handled (Closes: #330697).
     + LDAP, define scope as either sub or one (Closes: #311337).

 -- Thijs Kinkhorst <thijs@debian.org>  Sun, 9 Jul 2006 01:14:48 +0200