Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 300206 - dev-php5/ZendFramework Zend_Log_Writer_Mail allows attackers to send arbitrary emails (CVE-2009-4417)
Summary: dev-php5/ZendFramework Zend_Log_Writer_Mail allows attackers to send arbitrar...
Status: RESOLVED INVALID
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: High trivial (vote)
Assignee: Gentoo Security
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2010-01-08 17:37 UTC by Alex Legler (RETIRED)
Modified: 2013-03-03 22:34 UTC (History)
2 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Alex Legler (RETIRED) archtester gentoo-dev Security 2010-01-08 17:37:14 UTC
CVE-2009-4417 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2009-4417):
  The shutdown function in the Zend_Log_Writer_Mail class in Zend
  Framework (ZF) allows context-dependent attackers to send arbitrary
  e-mail messages to any recipient address via vectors related to
  "events not yet mailed."
Comment 1 Ben de Groot (RETIRED) gentoo-dev 2010-01-16 19:41:00 UTC
There is a new 1.9.7 version that fixes several security related bugs, but I didn't see a reference to this issue. http://framework.zend.com/changelog/1.9.7
Comment 2 Matti Bickel (RETIRED) gentoo-dev 2013-01-09 21:00:29 UTC
From the advisory it seems that piwik shipped their own ZF1 parts which in combination with piwik's user input handling caused the vulnerability. There's also mentions of generic ZF exploits, but no specifics here.

Since the report is over 3 years old, I suggest we close this.
Comment 3 Sean Amoss (RETIRED) gentoo-dev Security 2013-03-03 22:34:47 UTC
Thanks Ben and Matti.