First Last Prev Next    No search results available      Search page      Enter new bug
Bug#: 120218
Alias:
Product:
Component:
Status: RESOLVED
Resolution: FIXED
Assigned To: Net-Mail Packages <net-mail@gentoo.org>
Hardware:
OS:
Version:
Priority:
Severity:
Reporter: Rob M. <thehandoftyr@gmail.com>
Add CC:
CC:
Remove selected CCs
URL:
Summary:
Status Whiteboard:
Keywords:
Flags: Requestee:
 
 
  ()

Filename Description Type Creator Created Size Actions
Create a New Attachment (proposed patch, testcase, etc.) View All

Bug 120218 depends on: Show dependency tree
Bug 120218 blocks:

Additional Comments: (this is where you put emerge --info)


Not eligible to see or edit group visibility for this bug.






View Bug Activity   |   Format For Printing   |   XML   |   Clone This Bug


Description:   Opened: 2006-01-24 13:05 0000
incorrect freeing of a invalid pointer when bouncing a message to the
originator or local postmaster causes DoS on fetchmail < 6.3.2, including all
Fetchmail 6.3.2-Release Candidates.

Resolution: upgrade to 6.3.2 - 6.2.x is End of Lifed.

Advisory in URL.

------- Comment #1 From Stefan Cornelius (RETIRED) 2006-01-24 14:00:36 0000 -------
the stable version is unaffected and the latest unstable version is fixed, too:
 nothing left to do for security here, reassigning this to net-mail, maybe you
want to remove 6.3.0 and 6.3.1?

------- Comment #2 From Torsten Veller 2006-01-24 14:10:33 0000 -------
removed 6.3.0 and 6.3.1.

First Last Prev Next    No search results available      Search page      Enter new bug