CVE-2007-2958: Medium severity Sylpheed-claws Sylpheed-claws vulnerability
Format string vulnerability in the incputerror function in src/inc.c in Sylpheed 2.4.4, and Sylpheed-Claws (Claws Mail) 1.9.100 and 2.10.0, allows remote POP3 servers to execute arbitrary code via format string specifiers in crafted replies.
Other sources
Ulf Harnhammar (Secunia Research) has discovered a format string vulnerability in sylpheed and claws-mail in incputerror() function in src/inc.c when displaying POP3 error reply.
Problem can be exploited by malicious POP3 server via specially crafted POP3 server replies containing format specifiers.
Successful exploitation may allow execution of arbitrary code, but requires that the user is tricked into connecting to a malicious POP3 server.
Secunia advisory:
http://secunia.com/advisories/26550/
Upstream patch:
http://cvs.sunsite.dk/viewcvs.cgi/sylpheedclaws/sylpheed-claws/src/inc.c.diff?r1=1.149.2.79&r2=1.149.2.80&onlywithtag=gtk2
New upstream version should be release in a few days.
— Red Hat
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-2958?
CVE-2007-2958 is considered to have a high severity as it allows remote execution of arbitrary code.
How do I fix CVE-2007-2958?
To fix CVE-2007-2958, update to Sylpheed version 2.4.5 or later, and Sylpheed-Claws versions 1.9.101 and 2.10.1 or later.
What software is affected by CVE-2007-2958?
CVE-2007-2958 affects Sylpheed 2.4.4, Sylpheed-Claws 1.9.100, and 2.10.0.
Can CVE-2007-2958 be exploited remotely?
Yes, CVE-2007-2958 can be exploited remotely via crafted replies from POP3 servers.
Who discovered CVE-2007-2958?
CVE-2007-2958 was discovered by Ulf Harnhammar from Secunia Research.