Secunia Advisory SA11087Courier Japanese Codeset Conversion Buffer Overflow Vulnerabilities
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Description
Some vulnerabilities have been reported in Courier, which potentially can be exploited to cause a DoS (Denial of Service) or compromise a vulnerable system. The vulnerabilities are reportedly caused due to boundary errors within the Shift-JIS ("shiftjis.c") and ISO2022JP ("iso2022jp.c") Japanese codeset converters when handling non-BMP (Basic Multilingual Plane) Unicode characters. According to the developers, the Shift-JIS and ISO2022JP codeset mappings may be used by the IMAP and Webmail service but are not enabled by default. Solution Provided and/or discovered by Deep Links Do you have additional information related to this advisory?Please provide information about patches, mitigating factors, new versions, exploits, faulty patches, links, and other relevant data by posting comments to this Advisory. You can also send this information to vuln@secunia.com
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||
231 views | ![]() |
| Limny Multiple Vulnerabilities | |
328 views | ![]() |
| Ubuntu update for thunderbird | |
234 views | ![]() |
| Debian update for php5 | |