Mon, 16 Sep 2019 04:10:11 UTC

Information for build squirrelmail-1.4.22-5.el6

ID883548
Package Namesquirrelmail
Version1.4.22
Release5.el6
Epoch
Summarywebmail client written in php
DescriptionSquirrelMail is a basic webmail package written in PHP4. It includes built-in pure PHP support for the IMAP and SMTP protocols, and all pages render in pure HTML 4.0 (with no JavaScript) for maximum compatibility across browsers. It has very few requirements and is very easy to configure and install.
Built bymhlavink
State complete
Volume DEFAULT
StartedWed, 26 Apr 2017 14:14:41 UTC
CompletedWed, 26 Apr 2017 14:16:39 UTC
Taskbuild (el6-candidate, /rpms/squirrelmail:afe1a92dbed9271432808d86a80b3da920246029)
Tags
dist-6E-epel
RPMs
src
squirrelmail-1.4.22-5.el6.src.rpm (info) (download)
noarch
squirrelmail-1.4.22-5.el6.noarch.rpm (info) (download)
Logs
noarch
build.log
root.log
hw_info.log
state.log
Changelog * Wed Apr 26 2017 Michal Hlavinka <mhlavink@redhat.com> - 1.4.22-5 - fix insufficient escaping of user-supplied data (CVE-2017-7692) * Fri Mar 07 2014 Michal Hlavinka <mhlavink@redhat.com> - 1.4.22-4 - add php-pear-DB to requirements (#829533) * Fri Sep 21 2012 Michal Hlavinka <mhlavink@redhat.com> - 1.4.22-3 - use original squirrelmail logo (#859311) * Wed Jul 13 2011 Michal Hlavinka <mhlavink@redhat.com> - 1.4.22-2 - fix possible php warning * Wed Jul 13 2011 Michal Hlavinka <mhlavink@redhat.com> - 1.4.22-1 - squirrelmail updated to 1.4.22 - fixes CVE-2010-4554, CVE-2010-4555, CVE-2011-2023 * Fri Jul 23 2010 Michal Hlavinka <mhlavink@redhat.com> - 1.4.21-1 - updated to 1.4.21 - fixes CVE-2010-2813 : literal processing of 8-bit usernames/passwords during login - fixes CVE-2010-1637 : mail fetch plugin's port-scans via non-standard POP3 server ports * Mon Jun 14 2010 Michal Hlavinka <mhlavink@redhat.com> - 1.4.20-3 - build for epel 6 * Mon Jun 07 2010 Michal Hlavinka <mhlavink@redhat.com> - 1.4.20-2 - add note to config file that https connections are forced by default * Mon Mar 08 2010 Michal Hlavinka <mhlavink@redhat.com> - 1.4.20-1 - updated to 1.4.20 - translations updated * Thu Sep 17 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.20-0.rc2.20100104 - updated to 1.4.20RC2 20100104 snapshot - fix multi-word searching (#551626) * Thu Sep 17 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.20-0.rc2.20090917 - updated to 1.4.20RC2 20090917 snapshot - fix searching in emails (#523016) * Wed Aug 19 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.20RC2-1 - updated to 1.4.20RC2 * Thu Aug 13 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.20RC1-1 - updated to 1.4.20RC1 - fixes #517312 - CSRF issues in all forms (SA34627) * Sun Jul 26 2009 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 1.4.19-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild * Wed Jul 01 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.19-3 - change default configuration to use only ssl connections * Tue Jun 30 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.19-2 - use hunspell instead of ispell in squirrelspell plugin (#508631) * Fri May 22 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.19-1 - updated to 1.4.19 - fixes CVE-2009-1381 * Tue May 19 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.18-2 - fix undefined variable aSpamIds (#501260) * Tue May 12 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.18-1 - updated to 1.4.18 * Wed Mar 18 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.17-7 - fix: patch was not applyed * Wed Mar 18 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.17-6 - don't use white text (invisible on white paper) for highlighting in conf.pl (#427217) * Tue Mar 17 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.17-5 - don't use colored conf.pl by default (#427217) * Wed Feb 25 2009 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 1.4.17-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild * Wed Feb 25 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.17-3 - drop versioned dependencies * Mon Feb 23 2009 Michal Hlavinka <mhlavink@redhat.com> - 1.4.17-2 - fix: sm. can't handle big UIDs sent from dovecot on 32bit machines - move plugins/demo to doc directory * Thu Dec 04 2008 Michal Hlavinka <mhlavink@redhat.com> - 1.4.17-1 - update to 1.4.17 (fixes CVE-2008-2379) * Mon Sep 29 2008 Michal Hlavinka <mhlavink@redhat.com> - 1.4.16-1 - updates to 1.4.16 (fixes CVE-2008-3663) * Fri Sep 05 2008 Tom "spot" Callaway <tcallawa@redhat.com> - 1.4.15-1 - fix license tag - update to 1.4.15 * Fri Dec 14 2007 Kevin Fenzi <kevin@tummy.com> - 1.4.13-1 - upgrade to new upstream 1.4.13 - note that this package was never vulnerable to CVE-2007-6348 * Wed Oct 10 2007 Martin Bacovsky <mbacovsk@redhat.com> - 1.4.11-1 - upgrade to new upstream 1.4.11 * Fri May 11 2007 Martin Bacovsky <mbacovsk@redhat.com> - 1.4.10a-1 - upgrade to new upstream 1.4.10a - resolves: #239704: CVE-2007-1262 squirrelmail cross-site scripting flaw - resolves: #218297: CVE-2006-6142 Three XSS issues in SquirrelMail * Mon Apr 23 2007 Martin Bacovsky <mbacovsk@redhat.com> - 1.4.9a-2 - resolves: #237136:PHP Fatal error: Call to a member function getParameter() on a non-object in /usr/share/squirrelmail/functions/mime.php on line 317 - resolves: #229454: Errors in /var/log/httpd/error_log - resolves: #222879: squirrelmail ja_JP patches break build * Tue Apr 17 2007 Martin Bacovsky <mbacovsk@redhat.com> - 1.4.9a-1 - upgarde to new upstream 1.4.9a - resolves: #235560 Many SM errors in apache logs * Mon Jan 22 2007 Warren Togami <wtogami@redhat.com> 1.4.8-4 - Clean up .orig files (#223648) * Mon Jan 15 2007 Warren Togami <wtogami@redhat.com> 1.4.8-3 - CVE-2006-6142 * Tue Aug 15 2006 Warren Togami <wtogami@redhat.com> 1.4.8-2 - more Japanese filename fixes (#195639) * Fri Aug 11 2006 Warren Togami <wtogami@redhat.com> 1.4.8-1 - 1.4.8 release with CVE-2006-4019 and upstream bug fixes * Tue Jul 18 2006 Warren Togami <wtogami@redhat.com> 1.4.7-5 - More JP translation updates (#194598) * Mon Jul 10 2006 Warren Togami <wtogami@redhat.com> 1.4.7-4 - Fix fatal typo in config_local.php (#198306) * Sun Jul 09 2006 Warren Togami <wtogami@redhat.com> 1.4.7-2 - Move sqspell_config.php to /etc and mark it %config(noreplace) (#192236) * Fri Jul 07 2006 Warren Togami <wtogami@redhat.com> 1.4.7-1 - 1.4.7 with CVE-2006-3174 - Reduce patch for body text (#194457) - Better JP translation for "Check mail" (#196117) * Fri Jun 23 2006 Warren Togami <wtogami@redhat.com> 1.4.6-8 - Japanese zenkaku subject conversion (#196017) - Japanese MSIE garbled download ugly hack (#195639) - Japanese multibyte attachment view text (#195452) - Japanese multibyte attachment body text (#194457) - Do not convert Japanese Help to UTF-8 (#194599) * Wed Jun 07 2006 Warren Togami <wtogami@redhat.com> 1.4.6-7 - CVE-2006-2842 File Inclusion Vulnerability * Mon Jun 05 2006 Warren Togami <wtogami@redhat.com> 1.4.6-6 - buildreq gettext (194169) * Tue Apr 04 2006 Warren Togami <wtogami@redhat.com> 1.4.6-5 - Fix Chinese and Korean too * Fri Mar 24 2006 Warren Togami <wtogami@redhat.com> 1.4.6-4 - Fix outgoing Japanese mail to iso-2022-jp for now (#185767) * Fri Mar 03 2006 Warren Togami <wtogami@redhat.com> 1.4.6-3 - Fix regex in doc mangling (#183943 Michal Jaegermann) * Fri Mar 03 2006 David Woodhouse <dwmw2@redhat.com> 1.4.6-2 - Add a %build section, move the file mangling to it. (#162852 Nicolas Mailhot) * Wed Mar 01 2006 David Woodhouse <dwmw2@redhat.com> 1.4.6-1 - Upgrade to 1.4.6 proper for CVE-2006-0377 CVE-2006-0195 CVE-2006-0188 - Script the charset changes instead of using a patch - Convert the ko_KR files to UTF-8, dropping invalid characters from what's theoretically supposed to be EUC-KR in the original. * Tue Jan 17 2006 Warren Togami <wtogami@redhat.com> 1.4.6-0.cvs20050812.3 - do not remove mo files - require php-mbstring * Fri Dec 09 2005 Jesse Keating <jkeating@redhat.com> - rebuilt * Mon Sep 12 2005 David Woodhouse <dwmw2@redhat.com> 1.4.6-0.cvs20050812.2 - Convert all locales to UTF-8 instead of legacy character sets to work around bug #162852. Except for ko_KR, because iconv doesn't believe its help files are actually in EUC-KR as claimed. * Sun Aug 14 2005 Warren Togami <wtogami@redhat.com> 1.4.6-0.cvs20050812.1 - snapshot of 1.4.6 because 1.4.5 upstream was a bad release this hopefully will also work on PHP5 too... * Mon Jun 20 2005 Warren Togami <wtogami@redhat.com> 1.4.5-0.rc1 - 1.4.5-0.rc1 * Thu Jan 27 2005 Warren Togami <wtogami@redhat.com> 1.4.4-2 - 1.4.4 - re-include translations and Provide squirrelmail-i18n better compatible with upstream, but we cannot split sub-package due to support of existing distributions - remove unnecessary .po files * Fri Nov 19 2004 Warren Togami <wtogami@redhat.com> 1.4.3a-7 - CAN-2004-1036 Cross Site Scripting in encoded text - #112769 updated splash screens * Thu Oct 14 2004 Warren Togami <wtogami@redhat.com> 1.4.3a-5 - default_folder_prefix dovecot compatible by default /etc/squirrelmail/config_local.php if you must change it * Wed Oct 13 2004 Warren Togami <wtogami@redhat.com> 1.4.3a-4 - HIGASHIYAMA Masato's patch to improve Japanese support (coordinated by Scott A. Hughes). - real 1.4.3a tarball * Tue Sep 21 2004 Gary Benson <gbenson@redhat.com> 1.4.3-3 - rebuilt. * Tue Aug 31 2004 Warren Togami <wtogami@redhat.com> 1.4.3-2 - #125638 config_local.php and default_pref in /etc/squirrelmail/ to match upstream RPM. This should allow smoother drop-in replacements and upgrades. - other spec cleanup. * Mon Jun 07 2004 Gary Benson <gbenson@redhat.com> 1.4.3-1 - upgrade to 1.4.3a. - retain stuff after version when adding release to it. * Wed Jun 02 2004 Gary Benson <gbenson@redhat.com> - upgrade to 1.4.3. * Fri Feb 13 2004 Elliot Lee <sopwith@redhat.com> - rebuilt. * Wed Jan 21 2004 Gary Benson <gbenson@redhat.com> 1.4.2-2 - fix calendar plugin breakage (#113902). * Thu Jan 08 2004 Gary Benson <gbenson@redhat.com> 1.4.2-1 - upgrade to 1.4.2. - tighten up permissions on /etc/squirrelmail/config.php (#112774). * Mon May 12 2003 Gary Benson <gbenson@redhat.com> 1.4.0-1 - upgrade to 1.4.0. - fix links in /usr/share/doc/squirrelmail-X.Y.Z/index.html (#90269). * Mon Mar 24 2003 Gary Benson <gbenson@redhat.com> 1.2.11-1 - upgrade to 1.2.11 to fix CAN-2003-0160. * Mon Feb 10 2003 Gary Benson <gbenson@redhat.com> 1.2.10-4 - fix syntax error in download.php (#82600). - resized splash screen to be the same size as the one it replaces (#82790) - remove piece of squirrelmail-1.2.10-xss.patch that changed the version from '1.2.10' to '1.2.11 [cvs]' * Wed Jan 22 2003 Tim Powers <timp@redhat.com> 1.2.10-3 - rebuilt * Wed Jan 15 2003 Tim Powers <timp@redhat.com> 1.2.10-2 - bump and rebuild * Mon Dec 09 2002 Gary Benson <gbenson@redhat.com> 1.2.10-1 - patch to fix CAN-2002-1341 (#78982) and CAN-2002-1276 (#79147). * Tue Dec 03 2002 Elliot Lee <sopwith@redhat.com> 1.2.8-2 - fix prep macro in changelog * Fri Sep 20 2002 Gary Benson <gbenson@redhat.com> 1.2.8-1 - upgrade to 1.2.8 to fix CAN-2002-1131 and CAN-2002-1132 (#74313) * Tue Aug 06 2002 Preston Brown <pbrown@redhat.com> 1.2.7-4 - replacement splash screen. * Mon Jul 22 2002 Gary Benson <gbenson@redhat.com> 1.2.7-3 - get rid of long lines in the specfile. - remove symlink in docroot and use an alias in conf.d instead. - work with register_globals off (#68669) * Tue Jul 09 2002 Gary Benson <gbenson@redhat.com> 1.2.7-2 - hardwire the hostname (well, localhost) into the config file (#67635) * Mon Jun 24 2002 Gary Benson <gbenson@redhat.com> 1.2.7-1 - hardwire the locations into the config file and cron file. - install squirrelmail-cleanup.cron as squirrelmail.cron. - make symlinks relative. - upgrade to 1.2.7. - more dependency fixes. * Fri Jun 21 2002 Gary Benson <gbenson@redhat.com> - summarize the summary, fix deps, and remove some redundant stuff. - tidy up the prep section. - replace directory definitions with standard RHL ones. * Fri Jun 21 2002 Tim Powers <timp@redhat.com> 1.2.6-3 - automated rebuild * Wed Jun 19 2002 Preston Brown <pbrown@redhat.com> 1.2.6-2 - adopted Konstantin Riabitsev <icon@duke.edu>'s package for Red Hat Linux. Nice job Konstantin!