[security] Debian Security Advisory
Lorenzo Iannuzzi
nakis a libero.it
Gio 25 Mar 2004 11:46:19 CET
http://www.debian.org/security/
Ulf Harnhammar discovered a number of vulnerabilities in emil, a
filter for converting Internet mail messages. The vulnerabilities
fall into two categories:
- CAN-2004-0152 - Buffer overflows in (1) the encode_mime function,
(2) the encode_uuencode function, (3) the decode_uuencode
function. These bugs could allow a carefully crafted email message
to cause the execution of arbitrary code supplied with the message
when it is acted upon by emil.
- CAN-2004-0153 - Format string bugs in statements which print
various error messages. The exploit potential of these bugs has
not been established, and is probably configuration-dependent.
--
Ciao e alla prossima!
Lorenzo
-------------- parte successiva --------------
Un allegato non testuale è stato rimosso....
Nome: non disponibile
Tipo: application/pgp-signature
Dimensione: 244 bytes
Descrizione: non disponibile
Url: http://itlists.org/pipermail/security/attachments/20040325/742be8f0/attachment.pgp
Maggiori informazioni sulla lista
security