The Mail Fetch plugin in SquirrelMail 1.4.20 and earlier allows remote authenticated users to bypass firewall restrictions and use SquirrelMail as a proxy to scan internal networks via a modified POP3 port number.
http://www.openwall.com/lists/oss-security/2010/06/21/1
http://www.openwall.com/lists/oss-security/2010/05/25/9
http://www.openwall.com/lists/oss-security/2010/05/25/3
http://support.apple.com/kb/HT5130
http://squirrelmail.org/security/issue/2010-06-21
http://rhn.redhat.com/errata/RHSA-2012-0103.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-June/043261.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-June/043258.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-June/043239.html
http://lists.apple.com/archives/security-announce/2012/Feb/msg00000.html