DSA-2787-1 roundcube -- design errorID: oval:org.secpod.oval:def:601136 | Date: (C)2013-10-28 (M)2022-10-10 |
Class: PATCH | Family: unix |
It was discovered that roundcube, a skinnable AJAX based webmail solution for IMAP servers, does not properly sanitize the _session parameter in steps/utils/save_pref.inc during saving preferences. The vulnerability can be exploited to overwrite configuration settings and subsequently allowing random file access, manipulated SQL queries and even code execution. roundcube in the oldstable distribution is not affected by this problem.