CVE-2006-4019
Publication date 11 August 2006
Last updated 17 July 2025
Ubuntu priority
Dynamic variable evaluation vulnerability in compose.php in SquirrelMail 1.4.0 to 1.4.7 allows remote attackers to overwrite arbitrary program variables and read or write the attachments and preferences of other users.
Status
Package | Ubuntu Release | Status |
---|---|---|
squirrelmail | 7.04 feisty |
Fixed 1.4.9a-1ubuntu0.1
|
6.10 edgy |
Fixed 1.4.8-1ubuntu0.1
|
|
6.06 LTS dapper |
Fixed 1.4.6-1ubuntu0.1
|