Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA468] DSA-468-1 emil


Vulnerability Assessment Details

[DSA468] DSA-468-1 emil

Vulnerability Assessment Summary
DSA-468-1 emil

Detailed Explanation for this Vulnerability Assessment

Ulf Härnhammar discovered a number of vulnerabilities in emil, a
filter for converting Internet mail messages. The vulnerabilities
fall into two categories:
Buffer overflows in (1) the encode_mime function,
(2) the encode_uuencode function, (3) the decode_uuencode
function. These bugs could permit a carefully crafted email message
to cause the execution of arbitrary code supplied with the message
when it is acted upon by emil.
Format string bugs in statements which print
various error messages. The exploit potential of these bugs has
not been established, and is probably configuration-dependent.
For the stable distribution (woody) these problems have been fixed in
version 2.1.0-beta9-11woody1.
For the unstable distribution (sid) these problems will be fixed soon.
We recommend that you update your emil package.


Solution : http://www.debian.org/security/2004/dsa-468
Network Security Threat Level: High

Networks Security ID: 9974

Vulnerability Assessment Copyright: This script is (C) 2005 Michel Arboi

Cables, Connectors

HP Z2 Mini G3 Workstation - Xeon E3-1245 v6 - 16GB RAM - 512GB SSD (X8U89AV)
$599.99
HP Z2 Mini G3 Workstation - Xeon E3-1245 v6 - 16GB RAM - 512GB SSD (X8U89AV) pictureDell PowerEdge R610 Kacee 1100 2x Xeon E5620 Quad Core 2.4GHz 6GB 502W PSU No HD
$124.99
Dell PowerEdge R610 Kacee 1100 2x Xeon E5620 Quad Core 2.4GHz 6GB 502W PSU No HD pictureDell PowerEdge R620 2x E5-2680v2 2.8GHz 10 Core 384GB 8x 300GB 10K SAS PERC H710
$3225.0
Dell PowerEdge R620 2x E5-2680v2 2.8GHz 10 Core 384GB 8x 300GB 10K SAS PERC H710 pictureApple A1289 Mac Pro 2009 2x Intel Xeon QC E5520 2.26GHz 7GB DDR3 2TB HDD 8800GT
$299.99
Apple A1289 Mac Pro 2009 2x Intel Xeon QC E5520 2.26GHz 7GB DDR3 2TB HDD 8800GT  picture


Discussions

No Discussions have been posted on this vulnerability.