Secunia Logo
Netsikker nu! 2008
 
CVE Reference: CVE-2007-2683
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-2683

Description:
Buffer overflow in Mutt 1.4.2 might allow local users to execute arbitrary code via "&" characters in the GECOS field, which triggers the overflow during alias expansion.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/34441

TRUSTIX
  http://www.trustix.org/errata/2007/0024/

ST
  1018066

SAID
  Secunia Advisory: SA25408
  Secunia Advisory: SA25529
  Secunia Advisory: SA25515
  Secunia Advisory: SA25546
  Secunia Advisory: SA26415

REDHAT
  http://www.redhat.com/support/errata/RHSA-2007-0386.html

MISC
  http://dev.mutt.org/trac/ticket/2885

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDKSA-2007:113

CONFIRM

BID
  24192


Return to the previous page.