File _patchinfo of Package patchinfo
<patchinfo incident="3900"> <packager>aeneas_jaissle</packager> <issue tracker="cve" id="CVE-2015-2180"></issue> <issue tracker="cve" id="CVE-2015-2181"></issue> <category>security</category> <rating>low</rating> <summary>Security update for roundcubemail</summary> <description>roundcubemail was updated to version 1.0.6 to fix many minor bugs and three security issues. The following vulnerabilities were fixed: * CVE-2015-2180: security improvement in DBMail driver of password plugin (shell execution) * CVE-2015-2181: security improvement in DBMail driver of password plugin (multiple buffer overflows) * security improvement in contact photo handling</description> </patchinfo>