[Kolab-announce] Fwd: [OpenPKG-SA-2004.019] OpenPKG Security Advisory (kolab)

Bernhard Reiter bernhard at intevation.de
Mon May 10 19:52:58 CEST 2004


Attached a security advisory for the Kolab Server.
The problem affected all versions.
The wrong permission problem is locally exploitable 
if you have local users.

In addition to the OpenPGK advisory,
the following rpm package  is the fix for the Kolab 1.0.x engine:
kolab-1.0-1.0.20.src.rpm
It can be found an the usual download place listed
at http://kroupware.org/howto-kolab.html
-------------- next part --------------
An embedded message was scrubbed...
From: Thomas Lotterer <thl at dev.de.cw.com>
Subject: [OpenPKG-SA-2004.019] OpenPKG Security Advisory (kolab) (Was: Re:	Possible Kolab LDAP configuration information disclosure)
Date: Wed, 5 May 2004 16:32:38 +0200
Size: 7502
URL: <http://lists.kolab.org/pipermail/announce/attachments/20040510/ee1bf9d6/attachment.mht>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 2145 bytes
Desc: signature
URL: <http://lists.kolab.org/pipermail/announce/attachments/20040510/ee1bf9d6/attachment.p7s>


More information about the announce mailing list