Debian-LTS alert DLA-363-1 (libphp-phpmailer)
| From: | Chris Lamb <lamby@debian.org> | |
| To: | debian-lts-announce@lists.debian.org | |
| Subject: | [SECURITY] [DLA 363-1] libphp-phpmailer security update | |
| Date: | Tue, 08 Dec 2015 20:35:05 +0200 | |
| Message-ID: | <1449599705.2595285.461744249.33DDB134@webmail.messagingengine.com> |
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Package : libphp-phpmailer Version : 5.1-1+deb6u11 CVE ID : CVE-2015-8476 Debian Bug : 807265 It was discovered that there was a header injection vulnerability in libphp-phpmailer, am email transfer library for PHP. For Debian 6 Squeeze, this issue has been fixed in libphp-phpmailer version 5.1-1+deb6u11. Regards, - -- ,''`. : :' : Chris Lamb `. `'` lamby@debian.org / chris-lamb.co.uk `- -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJWZyKJAAoJEB6VPifUMR5YRHQP/0golNEFx1P4i4RujzOkn3bQ KxnEe3C9GlQedyajXmZ4VMQ32xH1Dc5wWJknrHR6o3tuitPjiVRyiuqB5QBmGYOp ecopNkLQk57P2NgjzPtCMzsPKyhlJtFhZIOcI4OO1TxkMGokpOEwAzZO2Pofi8nm HWHc0x9PL3tUDFfTmf9ov/GSdLecVyAeCt7gnchirchYkFSzfBOIE+SC0Cd+jtu+ 5WikCZbEn7L76pUtKmF4TB0BrC9tmQdxpDgxeIE/fHAhgEK5YWFOwMJsk76U5jqL /CcZ7F/JfxVFDwfWHNcYex4krtHYDzf6352rEoWFtPHrzA7IkD/BuhXwJsSb0/43 /rWRchU0bfi7tmNSTkBcnH+lAormKEPO2cz0jX3r58HfKE2NlBDzRafl67aghLZ6 QdAJKlj/I36ndyS00BPmcDEEQrNeZKzgYG5REbGpsg5YPpxuEwiSiHAI+UXOMe8d FOi94ykMCc23QqU65HAV2sXzFD90FXxAZX4yQkIwRBUf++ajMNyoIFey43i2AOhT mHGtfHgWgNyDPyxW/X7qIsaX8jrdYUUQ9d+52Jg7fKH5eXTfXuBMsSzQzBR1KmyW na6ljKpPvrtUlGMdWY/F5/mk2mZZ6jdPHmAgK9sCrI0uEj+myMPyVOVbNy9sqSb0 Qc38qAsIY+j49rI5fm0a =kQRl -----END PGP SIGNATURE-----
