Oval Definition:oval:org.mitre.oval:def:20344
Revision Date:2014-02-17Version:11
Title:RHSA-2013:0126: squirrelmail security and bug fix update (Low)
Description:functions/imap_general.php in SquirrelMail, as used in Red Hat Enterprise Linux (RHEL) 4 and 5, does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP login attempts with different usernames, leading to the creation of many preference files. NOTE: this issue exists because of an incorrect fix for CVE-2010-2813.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CESA-2013:0126
CVE-2012-2124
RHSA-2013:0126-00
Platform(s):CentOS Linux 5
Red Hat Enterprise Linux 5
Product(s):squirrelmail
Definition Synopsis
  • Redhat 5 section
  • The operating system installed on the system is Red Hat Enterprise Linux 5
  • AND squirrelmail is earlier than 0:1.4.8-21.el5
  • OR Centos 5 section
  • The operating system installed on the system is CentOS Linux 5.x
  • AND squirrelmail is earlier than 0:1.4.8-21.el5.centos
  • BACK