Summary
The remote host is missing updates announced in
advisory GLSA 200408-07.
Solution
All Horde-IMP users should upgrade to the latest stable version:
# emerge sync
# emerge -pv '>=horde-imp-3.2.5'
# emerge '>=horde-imp-3.2.5'
http://www.securityspace.com/smysecure/catid.html?in=GLSA%20200408-07 http://bugs.gentoo.org/show_bug.cgi?id=59336
http://cvs.horde.org/diff.php/imp/docs/CHANGES?r1=1.389.2.106&r2=1.389.2.109&ty=h http://secunia.com/advisories/12202/
Insight
An input validation vulnerability has been discovered in Horde-IMP. This only affects users of Internet Explorer.
Severity
Classification
-
CVE CVE-2004-1443 -
CVSS Base Score: 4.3
AV:N/AC:M/Au:N/C:N/I:P/A:N
Related Vulnerabilities