Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA376] DSA-376-2 exim


Vulnerability Assessment Details

[DSA376] DSA-376-2 exim

Vulnerability Assessment Summary
DSA-376-2 exim

Detailed Explanation for this Vulnerability Assessment

A buffer overflow exists in exim, which is the standard mail transport
agent in Debian. By supplying a specially crafted HELO or EHLO
command, a possible hacker could cause a constant string to be written past
the end of a buffer allocated on the heap. This vulnerability is not
believed at this time to be exploitable to execute arbitrary code.
For the stable distribution (woody) this problem has been fixed in
exim version 3.35-1woody2 and exim-tls version 3.35-3woody1.
For the unstable distribution (sid) this problem has been fixed in
exim version 3.36-8. The unstable distribution does not contain an
exim-tls package.
We recommend that you update your exim or exim-tls package.


Solution : http://www.debian.org/security/2003/dsa-376
Network Security Threat Level: High

Networks Security ID: 8518

Vulnerability Assessment Copyright: This script is (C) 2005 Michel Arboi

Cables, Connectors


MacEffects Gray ALPS Mechanical Keyboard for Vintage Apple IIe Computers picture

MacEffects Gray ALPS Mechanical Keyboard for Vintage Apple IIe Computers

$195.00



Vintage Apple Certifited Apple Technical Coordinator T Shirt picture

Vintage Apple Certifited Apple Technical Coordinator T Shirt

$35.00



Vintage Apple Extended Keyboard II Vintage picture

Vintage Apple Extended Keyboard II Vintage

$35.00



Vintage Apple Ethernet Twisted-Pair Transceiver Model M0437 picture

Vintage Apple Ethernet Twisted-Pair Transceiver Model M0437

$19.99



VINTAGE APPLE 1980’s COMPUTER LAPEL PIN BADGE picture

VINTAGE APPLE 1980’s COMPUTER LAPEL PIN BADGE

$14.99



Vintage Apple Desktop Mouse A9M0331 picture

Vintage Apple Desktop Mouse A9M0331

$14.99



Vintage Apple Lisa Brochure, very nice condition picture

Vintage Apple Lisa Brochure, very nice condition

$50.00



Apple M5011 Macintosh SE Vintage PC picture

Apple M5011 Macintosh SE Vintage PC

$149.95



Vintage Apple Newton MessagePad 2000 With Original Box and Some Accessories picture

Vintage Apple Newton MessagePad 2000 With Original Box and Some Accessories

$199.99



Apple Macintosh Performa 466 Vintage Computer | SKU 146754 picture

Apple Macintosh Performa 466 Vintage Computer | SKU 146754

$149.95



Discussions

No Discussions have been posted on this vulnerability.