CVE-2002-1175
CVE-2002-1175
The getmxrecord function in Fetchmail 6.0.0 and earlier does not properly check the boundary of a particular malformed DNS packet from a malicious DNS server, which allows remote attackers to cause a denial of service (crash) when Fetchmail attempts to read data beyond the expected boundary.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000531http://marc.info/?l=bugtraq&m=103340148625187&w=2http://rhn.redhat.com/errata/RHSA-2002-215.htmlhttp://www.debian.org/security/2002/dsa-171http://www.iss.net/security_center/static/10203.phphttp://www.linux-mandrake.com/en/security/2002/MDKSA-2002-063.phphttp://www.linuxsecurity.com/advisories/other_advisory-2402.htmlhttp://www.securityfocus.com/bid/5826