Secunia Logo
Netsikker nu! 2008
 
CVE Reference: CVE-2007-5007
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-5007

Description:
Stack-based buffer overflow in the ir_fetch_seq function in balsa before 2.3.20 might allow remote IMAP servers to execute arbitrary code via a long response to a FETCH command.

CVE Status:
Candidate

References:

SUSE
  http://www.novell.com/linux/security/advisories/2007_19_sr.html

SAID
  Secunia Advisory: SA26947
  Secunia Advisory: SA26987
  Secunia Advisory: SA27272

MLIST
  http://mail.gnome.org/archives/balsa-list/2007-September/msg00010.html

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200710-17.xml

CONFIRM
  http://bugs.gentoo.org/show_bug.cgi?id=193179
  http://bugzilla.gnome.org/show_bug.cgi?id=474366

BID
  25777


Return to the previous page.