[Pkg-roundcube-maintainers] Bug#646675: "out of nowhere"?

Philipp Kern pkern at debian.org
Wed Oct 26 12:07:17 BST 2011


tag 646675 + security
severity 646675 serious
thanks

Erhm,

On Wed, Oct 26, 2011 at 10:06:14AM +0200, Holger Levsen wrote:
> severity 646675 important
> thanks

am I the only one who has insanely loud alarm bells when reading his report,
the ticket and everything?

It includes a foreign site and we can be happy that suhosin blocks it.  (I'm
working from the information in the roundcube ticket[0].  I didn't investigate
it myself.)  But suhosin is not the default?

Kind regards
Philipp Kern

[0] http://trac.roundcube.net/ticket/1488086
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 198 bytes
Desc: Digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-roundcube-maintainers/attachments/20111026/1e8df2a9/attachment-0001.pgp>


More information about the Pkg-roundcube-maintainers mailing list