Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 542
Alerts This Week
Warning Icon 1 542

Gentoo: GLSA-202310-12 Critical: Fetchmail Buffer Overflow Risk

gentoo
Calendar Grey July 25, 2005
Scroller Gentoo
Fetchmail running on Gentoo has a security flaw related to a buffer overflow, which could result in Denial of Service attacks and the potential for arbitrary code execution.
fetchmail is susceptible to a buffer overflow resulting in a Denial of Service or arbitrary code execution.

Summary

Gentoo Linux Security Advisory GLSA 200507-21 https://security.gentoo.org/ Severity: Normal Title: fetchmail: Buffer Overflow Date: July 25, 2005 Bugs: #99865 ID: 200507-21

Synopsis ======= fetchmail is susceptible to a buffer overflow resulting in a Denial of Service or arbitrary code execution.
Background ========= fetchmail is a utility that retrieves and forwards mail from remote systems using IMAP, POP, and other protocols.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-mail/fetchmail < 6.2.5.2 >= 6.2.5.2
========== fetchmail does not properly validate UIDs coming from a POP3 mail server. The UID is placed in a fixed length buffer on the stack, whic...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Severity
critical
Lowest
Low
Medium
High
Critical

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround