cvs commit: ports/mail/imp3 Makefile distinfo
Thierry Thomas
thierry at FreeBSD.org
Fri Jul 30 10:35:00 PDT 2004
thierry 2004-07-30 17:34:38 UTC
FreeBSD ports repository
Modified files:
mail/imp3 Makefile distinfo
Log:
- SECURITY: Closed an XSS hole in the HTML viewer, a variation to the one
reported in http://www.greymagic.com/security/advisories/gm005-mc/.
This vulnerability only exists when using the Internet Explorer to
access IMP and only when using the inline MIME viewer for HTML messages.
- Commented out the complete <style> tags in the HTML viewer to avoid CSS
code appearing in the message.
- Fixed a cosmetic issue with broken mail servers that return quotes where
they should not (Bug #292). <- edwin ;-)
- Updated translations: Estonian, German.
Revision Changes Path
1.34 +1 -1 ports/mail/imp3/Makefile
1.10 +2 -2 ports/mail/imp3/distinfo
More information about the cvs-all
mailing list