Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-0562

Опубликовано: 08 фев. 2010
Источник: ubuntu
Приоритет: low
CVSS2: 6.8

Описание

The sdump function in sdump.c in fetchmail 6.3.11, 6.3.12, and 6.3.13, when running in verbose mode on platforms for which char is signed, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an SSL X.509 certificate containing non-printable characters with the high bit set, which triggers a heap-based buffer overflow during escaping.

РелизСтатусПримечание
dapper

not-affected

devel

not-affected

only 6.3.11 through 6.3.13
hardy

not-affected

intrepid

not-affected

jaunty

not-affected

karmic

not-affected

upstream

released

6.3.14

Показывать по

Ссылки на источники

6.8 Medium

CVSS2

Связанные уязвимости

redhat
почти 16 лет назад

The sdump function in sdump.c in fetchmail 6.3.11, 6.3.12, and 6.3.13, when running in verbose mode on platforms for which char is signed, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an SSL X.509 certificate containing non-printable characters with the high bit set, which triggers a heap-based buffer overflow during escaping.

nvd
почти 16 лет назад

The sdump function in sdump.c in fetchmail 6.3.11, 6.3.12, and 6.3.13, when running in verbose mode on platforms for which char is signed, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an SSL X.509 certificate containing non-printable characters with the high bit set, which triggers a heap-based buffer overflow during escaping.

debian
почти 16 лет назад

The sdump function in sdump.c in fetchmail 6.3.11, 6.3.12, and 6.3.13, ...

github
больше 3 лет назад

The sdump function in sdump.c in fetchmail 6.3.11, 6.3.12, and 6.3.13, when running in verbose mode on platforms for which char is signed, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an SSL X.509 certificate containing non-printable characters with the high bit set, which triggers a heap-based buffer overflow during escaping.

6.8 Medium

CVSS2