First published: Sat Sep 23 2017(Updated: )
A flaw was found in the loadbuf function in formisc.c. When the buffer is too small, the function tries to resize it, but only by Bsize (=128) bytes. This is not necessarily enough and could cause denial of service. References: <a href="https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=876511">https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=876511</a>
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Procmail Procmail | =3.22 | |
debian/procmail | <=3.22-24<=3.22-25 | 3.22-26 3.22-25+deb9u1 3.22-24+deb8u1 |
debian/procmail | 3.22-26+deb10u1 3.22-26+deb11u1 3.22-27 3.24+really3.22-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.