Family: Debian Local Security Checks --> Category: infos
[DSA732] DSA-732-1 mailutils Vulnerability Scan
Vulnerability Scan Summary
Detailed Explanation for this Vulnerability Test
"infamous41md" discovered several vulnerabilities in the GNU mailutils
package which contains utilities for handling mail. These problems
can lead to a denial of service or the execution of arbitrary code.
The Common Vulnerabilities and Exposures project identifies the
Buffer overflow mail header handling may allow a remote attacker
to execute commands with the rights of the targeted user.
Combined integer and heap overflow in the fetch routine can lead
to the execution of arbitrary code.
Denial of service in the fetch routine.
Format string vulnerability can lead to the execution of arbitrary
For the stable distribution (woody) these problems have been fixed in
For the testing distribution (sarge) these problems have been fixed in
For the unstable distribution (sid) these problems have been fixed in
We recommend that you upgrade your mailutils packages.
Solution : http://www.debian.org/security/2005/dsa-732
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.