Get a Pentest and security assessment of your IT network.

Advisories

Mandriva Linux Security Advisory 2010-037

Mandriva Linux Security Advisory 2010-037 – The sdump function in sdump.c in fetchmail 6.3.11, 6.3.12, and 6.3.13, when running in verbose mode on platforms for which char is signed, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an SSL X.509 certificate containing non-printable characters with the high bit set, which triggers a heap-based buffer overflow during escaping. This update provides fetchmail 6.3.14, which is not vulnerable to this issue.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/86351/MDVSA-2010-037.txt

Source: https://packetstormsecurity.com/files/86351/Mandriva-Linux-Security-Advisory-2010-037.html

Related posts
Advisories

57657.html

Advisories

Secunia Security Advisory 17317

Advisories

Ubuntu Security Notice 284-1

Advisories

Hardened-PHP Project Security Advisory 2006-14.139