Bug 42804

Summary: Missing ldap filter escaping in mail
Product: UCS Reporter: Florian Best <best>
Component: MailAssignee: Mail maintainers <mail-maintainers>
Status: CLOSED WORKSFORME QA Contact:
Severity: normal    
Priority: P5 Flags: best: Patch_Available+
Version: UCS 4.4   
Target Milestone: ---   
Hardware: Other   
OS: Linux   
See Also: https://forge.univention.org/bugzilla/show_bug.cgi?id=41055
What kind of report is it?: Development Internal What type of bug is this?: ---
Who will be affected by this bug?: --- How will those affected feel about the bug?: ---
User Pain: Enterprise Customer affected?:
School Customer affected?: ISV affected?:
Waiting Support: Flags outvoted (downgraded) after PO Review:
Ticket number: Bug group (optional): Security
Max CVSS v3 score:
Attachments: patch

Description Florian Best univentionstaff 2016-10-31 16:04:19 CET
Created attachment 8173 [details]
patch

At least the filters in mail/univention-mail-postfix/share/listfilter.py are broken. I don't know what the script does / how is able to call it / where the user input comes from. Might lead to security issues.
Comment 1 Florian Best univentionstaff 2016-10-31 16:05:43 CET
The patch in Bug #41055 (attachment 7593 [details]) needs to be fixed as well.
Comment 2 Stefan Gohmann univentionstaff 2019-01-03 07:18:41 CET
This issue has been filled against UCS 4.1. The maintenance with bug and security fixes for UCS 4.1 has ended on 5st of April 2018.

Customers still on UCS 4.1 are encouraged to update to UCS 4.3. Please contact
your partner or Univention for any questions.

If this issue still occurs in newer UCS versions, please use "Clone this bug" or simply reopen the issue. In this case please provide detailed information on how this issue is affecting you.
Comment 3 Florian Best univentionstaff 2019-03-14 08:15:34 CET
This seems already been fixed.
05c0f13656321993867bc5cfc83597bbdac5c919
Bug #41055
Comment 4 Florian Best univentionstaff 2019-03-14 08:15:54 CET
<http://errata.software-univention.de/ucs/4.1/394.html>