MGASA-2018-0463
Dashboard / Vulnerabilities / MGASA-2018-0463
MGASA-2018-0463
Summary: Updated roundcubemail packages fix security vulnerability & bugs
Details: This is a service release to update the stable version 1.3 of Roundcube Webmail. It contains fixes to several bugs backported from the master branch including a security fix for a reported XSS vulnerability (in handling invalid style tag content) plus updates to ensure compatibility with PHP 7.3 and recent versions of Courier-IMAP, Dovecot and MySQL 8 (no CVE).
References: https://advisories.mageia.org/MGASA-2018-0463.html, https://bugs.mageia.org/show_bug.cgi?id=23826, https://lists.fedoraproject.org/archives/list/[email protected]/thread/56EUDX57TIX42ULN63ZD6HCOX5PLNOZJ/
Affected packages
Package
Name: roundcubemail
Purl: pkg:rpm/mageia/roundcubemail?arch=source&distro=mageia-6
Affected ranges
Type: ECOSYSTEM
Events:
