Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug
Bug#: 94053
Alias:
Product:
Component:
Status: RESOLVED
Resolution: FIXED
Assigned To: Gentoo Security <security@gentoo.org>
Hardware:
OS:
Version:
Priority:
Severity:
Reporter: Stefan Cornelius (RETIRED) <dercorny@gentoo.org>
Add CC:
CC:
Remove selected CCs
URL:
Summary:
Status Whiteboard:
Keywords:
Flags: Requestee:
 
 
  ()

Filename Description Type Creator Created Size Actions
Create a New Attachment (proposed patch, testcase, etc.) View All

Bug 94053 depends on: Show dependency tree
Bug 94053 blocks:

Additional Comments: (this is where you put emerge --info)


Not eligible to see or edit group visibility for this bug.






View Bug Activity   |   Format For Printing   |   XML   |   Clone This Bug


Description:   Opened: 2005-05-26 02:51 0000
3 bugs in imap4d-server, 2 of them allow remote code execution.
1 bug in another tool, also allowing remote code execution.

GNU Mailutils 0.6 imap4d Format String Vulnerability
GNU Mailutils 0.6 imap4d FETCH Commad Resource Consumption DoS Vulnerability
GNU Mailutils 0.6 imap4d fetch_io Heap overflow Vulnerability
GNU Mailutils 0.6 mail header_get_field_name() Buffer Overflow Vulnerability

http://www.idefense.com/application/poi/display?id=246&type=vulnerabilities
http://www.idefense.com/application/poi/display?id=247&type=vulnerabilities
http://www.idefense.com/application/poi/display?id=248&type=vulnerabilities
http://www.idefense.com/application/poi/display?id=249&type=vulnerabilities

------- Comment #1 From Thierry Carrez (RETIRED) 2005-05-26 05:01:02 0000 -------
net-mail: Please bump to 0.6.90 which fixes these issues.

------- Comment #2 From Thierry Carrez (RETIRED) 2005-05-26 05:34:01 0000 -------
Looks like remote root to me in default config, so we are kinda in a hurry now.
ferdy is looking if the 0.6.90 is not too-much-of-an-alpha version.

------- Comment #3 From Fernando J. Pereda (RETIRED) 2005-05-26 09:34:51 0000 -------
Backported the patches to 0.6, commited as 0.6-r1. Had to drop ~alpha keyword

Cheers,
Ferdy

------- Comment #4 From Thierry Carrez (RETIRED) 2005-05-27 00:35:35 0000 -------
alpha: could you have a look on what it doesn't compile ?
Given the impact, we might release the GLSA today so if it can meet ~alpha in
the meantime, all the better...

------- Comment #5 From Thierry Carrez (RETIRED) 2005-05-27 00:45:03 0000 -------
Got the go-ahead from kloeri, this is ready for GLSA

------- Comment #6 From Thierry Carrez (RETIRED) 2005-05-27 04:48:10 0000 -------
Thanks everyone, GLSA 200505-20 is out

------- Comment #7 From Jordi Mallach 2005-05-27 05:05:21 0000 -------
ferdy, I'm the Debian maintainer. Have a look at
http://svn.debian.org/wsvn/pkg-mailutils/trunk/debian/patches/04_imap4d_ulong_max.patch?op=file&rev=0&sc=0
for a patch for 64 bit architectures.

Basically, you'd have to add that to your backport (I'm assuming you dropped
alpha because it fails to run the testsuite successfully).

Contact me at jordi@debian.org if you need more.

Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug