Candidate: CVE-2011-2752 PublicDate: 2011-07-17 20:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-2752 Description: CRLF injection vulnerability in SquirrelMail 1.4.21 and earlier allows remote attackers to modify or add preference values via a \n (newline) character, a different vulnerability than CVE-2010-4555. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_squirrelmail: upstream_squirrelmail: released (2:1.4.22-1) hardy_squirrelmail: ignored (reached end-of-life) lucid_squirrelmail: ignored (reached end-of-life) maverick_squirrelmail: ignored (reached end-of-life) natty_squirrelmail: ignored (reached end-of-life) oneiric_squirrelmail: ignored (reached end-of-life) precise_squirrelmail: not-affected (2:1.4.22-1) quantal_squirrelmail: ignored (reached end-of-life) raring_squirrelmail: ignored (reached end-of-life) saucy_squirrelmail: ignored (reached end-of-life) trusty_squirrelmail: not-affected (2:1.4.22-1) trusty/esm_squirrelmail: DNE (trusty was not-affected [2:1.4.22-1]) utopic_squirrelmail: ignored (reached end-of-life) vivid_squirrelmail: ignored (reached end-of-life) vivid/stable-phone-overlay_squirrelmail: DNE vivid/ubuntu-core_squirrelmail: DNE wily_squirrelmail: ignored (reached end-of-life) xenial_squirrelmail: not-affected (2:1.4.22-1) yakkety_squirrelmail: not-affected (2:1.4.22-1) devel_squirrelmail: DNE