On 16-12-2008 a security patch for RoundCube 0.2 Beta came available.
There were two security issues reported for RoundCube 0.2 Beta, which are now fixed. The first was as possible code injection using the html2text conversion script. The other exploit used the unchecked size parameters of the quota image to let PHP create huge images eating up all the server memory.
If you make use of the ROundCube 0.2 Beta package for ISPConfig 2, it is strongly recommended to install this patch file.
The patch file and readme file can be downloaded
here.
Recent comments
17 hours 55 min ago
22 hours 53 min ago
1 day 20 min ago
1 day 1 hour ago
1 day 2 hours ago
1 day 7 hours ago
1 day 8 hours ago
1 day 10 hours ago
1 day 23 hours ago
2 days 1 hour ago