Oval Definition:
oval:org.mitre.oval:def:24353
Revision Date
:
2014-06-23
Version
:
6
Title
:
DSA-2889-1 postfixadmin - security update
Description
:
An SQL injection vulnerability was discovered in postfixadmin, a webadministration interface for the Postfix Mail Transport Agent, whichallowed authenticated users to make arbitrary manipulations to thedatabase.
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CVE-2014-2655
DSA-2889-1
Platform(s)
:
Debian GNU/kFreeBSD 7
Debian GNU/Linux 7
Product(s)
:
postfixadmin
Definition Synopsis
Debian 7 is installed
AND
GNU/Linux or GNU/kFreeBSD kernel
Debian GNU/Linux is installed
OR
Debian GNU/kFreeBSD is installed
AND
postfixadmin DPKG is earlier than 0:2.3.5-2+deb7u1
BACK