Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Gentoo: GLSA-200408-19 High: Remote Format String Attack in Courier-IMAP

gentoo
Calendar Grey August 19, 2004
Dist Gentoo Esm H88
A vulnerability in courier-imap's handling of remote format strings could lead to privilege escalation to root level. Gentoo users are urged to apply updates promptly.
There is a format string vulnerability in non-standard configurations of courier-imapd which may be exploited remotely

Summary

Gentoo Linux Security Advisory GLSA 200408-19 https://security.gentoo.org/ Severity: High Title: courier-imap: Remote Format String Vulnerability Date: August 19, 2004 Bugs: #60865 ID: 200408-19

Synopsis ======= There is a format string vulnerability in non-standard configurations of courier-imapd which may be exploited remotely. An attacker may be able to execute arbitrary code as the user running courier-imapd (oftentimes root).
Background ========= Courier-IMAP is an IMAP server which is part of the Courier mail system. It provides access only to maildirs.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-mail/courier-imap <= 3.0.2-r1 >= 3.0.5
=======...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns


Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/4180433_4c9dbbdde36eef04251a4ced7eac4df9 on line 11

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here