cvs commit: ports/mail/imp3 Makefile distinfo

Thierry Thomas thierry at FreeBSD.org
Fri Jul 30 10:35:00 PDT 2004


thierry     2004-07-30 17:34:38 UTC

  FreeBSD ports repository

  Modified files:
    mail/imp3            Makefile distinfo 
  Log:
  - SECURITY: Closed an XSS hole in the HTML viewer, a variation to the one
    reported in http://www.greymagic.com/security/advisories/gm005-mc/.
    This vulnerability only exists when using the Internet Explorer to
    access IMP and only when using the inline MIME viewer for HTML messages.
  
  - Commented out the complete <style> tags in the HTML viewer to avoid CSS
    code appearing in the message.
  
  - Fixed a cosmetic issue with broken mail servers that return quotes where
    they should not (Bug #292).  <- edwin ;-)
  
  - Updated translations: Estonian, German.
  
  Revision  Changes    Path
  1.34      +1 -1      ports/mail/imp3/Makefile
  1.10      +2 -2      ports/mail/imp3/distinfo


More information about the cvs-all mailing list