Nessus Plugin #15305
Plugin Index
Note: This file has been created from a
downloaded version of the Nessus Plugins
from
http://www.nessus.org/.
Therefore, the information here can be outdated.
[DSA468] DSA-468-1 emil
- Family:
- Debian Local Security Checks
- Category:
- infos
- Copyright:
- This script is (C) 2004 Michel Arboi
- Summary:
- DSA-468-1 emil
- Version:
- $Revision: 1.4 $
- Cve_id:
- CAN-2004-0152, CAN-2004-0153
- Bugtraq_id:
- 9974
- Xrefs:
- DSA:468
- Description:
Ulf HΣrnhammar discovered a number of vulnerabilities in emil, a
filter for converting Internet mail messages. The vulnerabilities
fall into two categories:
Buffer overflows in (1) the encode_mime function,
(2) the encode_uuencode function, (3) the decode_uuencode
function. These bugs could allow a carefully crafted email message
to cause the execution of arbitrary code supplied with the message
when it is acted upon by emil.
Format string bugs in statements which print
various error messages. The exploit potential of these bugs has
not been established, and is probably configuration-dependent.
For the stable distribution (woody) these problems have been fixed in
version 2.1.0-beta9-11woody1.
For the unstable distribution (sid) these problems will be fixed soon.
We recommend that you update your emil package.
Solution : http://www.debian.org/security/2004/dsa-468
Risk factor : High
Generiert am 27.04.2005 um 18:49:54 Uhr.