Gentoo Security Advisory GLSA 200405-16 (SquirrelMail)

Summary
The remote host is missing updates announced in advisory GLSA 200405-16.
Solution
All SquirrelMail users should upgrade to the latest stable version: # emerge sync # emerge -pv '>=net-mail/squirrelmail-1.4.3_rc1' # emerge '>=net-mail/squirrelmail-1.4.3_rc1' http://www.securityspace.com/smysecure/catid.html?in=GLSA%20200405-16 http://bugs.gentoo.org/show_bug.cgi?id=49675 http://sourceforge.net/mailarchive/forum.php?thread_id=4199060&forum_id=1988 http://www.securityfocus.com/bid/10246/ http://www.cert.org/advisories/CA-2000-02.html
Insight
SquirrelMail is subject to several XSS and one SQL injection vulnerability.