Mageia 2020-0313: php-phpmailer security update
Summary
Fix insufficient output escaping bug in file attachment names
(CVE-2020-13625).
References
- https://bugs.mageia.org/show_bug.cgi?id=26760
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/OBRDMEV3CB44CAAF5BOHFNV23JVRO6PZ/
- https://github.com/advisories/GHSA-f7hx-fqxw-rvvj
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-13625
Resolution
MGASA-2020-0313 - Updated php-phpmailer packages fix security vulnerability
SRPMS
- 7/core/php-phpmailer-6.1.6-1.mga7