First published: Mon Jul 05 2010(Updated: )
A flaw was found in bogofilter's/bogolexer's base64 where it could overwrite memory before its heap buffer, if the base64 input started with an equals sign, such as through misdeclaration of quoted-printable as base64. This would cause bogofilter/bogolexer to corrupt their heap and crash upon receiving such an email message. Something is wrong with the bogofilter home page, the original referenced advisory [1] is currently unavailable, however a copy in svn [2] is. This will also be corrected in upstream version 1.2.2; a patch [3] is available. Please note that upstream version 1.2.2 is not yet available. References: [1] <a href="http://bogofilter.sourceforge.net/security/bogofilter-SA-2010-01">http://bogofilter.sourceforge.net/security/bogofilter-SA-2010-01</a> [2] <a href="http://bogofilter.svn.sourceforge.net/viewvc/bogofilter/trunk/bogofilter/doc/bogofilter-SA-2010-01?view=markup&pathrev=6909">http://bogofilter.svn.sourceforge.net/viewvc/bogofilter/trunk/bogofilter/doc/bogofilter-SA-2010-01?view=markup&pathrev=6909</a> [3] <a href="http://bogofilter.svn.sourceforge.net/viewvc/bogofilter/trunk/bogofilter/src/base64.c?view=patch&r1=6906&r2=6903">http://bogofilter.svn.sourceforge.net/viewvc/bogofilter/trunk/bogofilter/src/base64.c?view=patch&r1=6906&r2=6903</a> This affects bogofilter as shipped in Fedora 12 and 13, as well as EPEL5.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Bogofilter Bogofilter | =1.0.0 | |
Bogofilter Bogofilter | =1.1.2 | |
Bogofilter Bogofilter | =1.1.7 | |
Bogofilter Bogofilter | =1.0.1 | |
Bogofilter Bogofilter | <=1.2.1 | |
Bogofilter Bogofilter | =1.1.0 | |
Bogofilter Bogofilter | =1.1.5 | |
Bogofilter Bogofilter | =1.1.3 | |
Bogofilter Bogofilter | =1.2.0 | |
Bogofilter Bogofilter | =1.0.2 | |
Bogofilter Bogofilter | =1.1.4 | |
Bogofilter Bogofilter | =1.1.1 | |
Bogofilter Bogofilter | =1.1.6 | |
Bogofilter Bogofilter | =1.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.