Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 355 - Important new version SquirrelMail containing some fixes for security related issues
Summary: Important new version SquirrelMail containing some fixes for security related...
Status: RESOLVED DUPLICATE of bug 354
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: Current packages (show other bugs)
Hardware: x86 Linux
: High normal
Assignee: Mikael Hallendal (hallski) (RETIRED)
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2002-01-27 04:25 UTC by Ferry Meyndert
Modified: 2005-07-17 13:06 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Ferry Meyndert 2002-01-27 04:25:26 UTC
SquirrelMail Web-based Mail Server Lets Remote Users Execute Arbitrary Code on
the Server 

Date:  Jan 25 2002
Impact:  Execution of arbitrary code via network, User access via network
Fix Available:  Yes   Exploit Included:  Yes   Vendor Confirmed:  Yes  
Version(s): 1.2.2
Description:  A vulnerability was reported in SquirrelMail webmail server. A
remote user can execute arbitrary commands on the server.

It is reported that the spell checker plugin (check_me.mod.php) allows a remote
user to specify commands to be executed on the server. The following type of URL
will reportedly trigger the vulnerability:

host/plugins/squirrelspell/modules/check_me.mod.php?SQSPELL_APP[blah]=wall%
20hello&sqspell_use_ app=blah&attachment_dir=/tmp&username_sqspell_data=plik
Impact:  A remote user can execute commands on the server with the privileges of
the web server.
Solution:  The vendor has released a fixed version (1.2.4), available at:

http://www.squirrelmail.org/download.php

ebuild doesnt need to be changed much. SOrry have to get too work now so i cant
 make a fixed ebuild. BUt if the bug isnt solved yet when i come back i make one.

Ferry Meyndert <m0rpheus@poseidon.mine.nu>
Comment 1 Mikael Hallendal (hallski) (RETIRED) gentoo-dev 2002-01-27 04:48:11 UTC

*** This bug has been marked as a duplicate of 354 ***