Alerts This Week
Warning Icon 1 770
Alerts This Week
Warning Icon 1 770

Gentoo: GLSA-200710-17 Normal: Balsa Buffer Overflow Execution Risk

gentoo
Calendar Grey October 17, 2007
Dist Gentoo Esm H88
The Gentoo Linux Security Advisory GLSA 200710-17 highlights a severe buffer overflow vulnerability in Balsa email client, risking arbitrary code execution.
Balsa is vulnerable to a buffer overflow allowing for the user-assisted execution of arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200710-17 https://security.gentoo.org/ Severity: Normal Title: Balsa: Buffer overflow Date: October 16, 2007 Bugs: #193179 ID: 200710-17

Synopsis ======= Balsa is vulnerable to a buffer overflow allowing for the user-assisted execution of arbitrary code.
Background ========= Balsa is a highly configurable email client for GNOME.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 mail-client/balsa < 2.3.20 >= 2.3.20
========== Evil Ninja Squirrel discovered a stack-based buffer overflow in the ir_fetch_seq() function when receiving a long response to a FETCH command (CVE-2007-5007).
Impact ===== A remote attacker could entic...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Your message here