REDHAT-BUG-611551: Medium severity bogofilter bogofilter vulnerability
A flaw was found in bogofilter's/bogolexer's base64 where it could overwrite memory before its heap buffer, if the base64 input started with an equals sign, such as through misdeclaration of quoted-printable as base64. This would cause bogofilter/bogolexer to corrupt their heap and crash upon receiving such an email message.
Something is wrong with the bogofilter home page, the original referenced advisory [1] is currently unavailable, however a copy in svn [2] is. This will also be corrected in upstream version 1.2.2; a patch [3] is available. Please note that upstream version 1.2.2 is not yet available.
References:
[1] http://bogofilter.sourceforge.net/security/bogofilter-SA-2010-01 [2] http://bogofilter.svn.sourceforge.net/viewvc/bogofilter/trunk/bogofilter/doc/bogofilter-SA-2010-01?view=markup&pathrev=6909 [3] http://bogofilter.svn.sourceforge.net/viewvc/bogofilter/trunk/bogofilter/src/base64.c?view=patch&r1=6906&r2=6903
This affects bogofilter as shipped in Fedora 12 and 13, as well as EPEL5.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-611551?
REDHAT-BUG-611551 has been identified as a critical vulnerability due to its potential to cause memory corruption and application crashes.
How do I fix REDHAT-BUG-611551?
To fix REDHAT-BUG-611551, upgrade to the latest patched version of Bogofilter that addresses this memory corruption issue.
Which versions are affected by REDHAT-BUG-611551?
REDHAT-BUG-611551 affects Bogofilter version 1.2.1 and prior to version 1.2.2, as well as specific versions of Fedora and EPEL5.
What is the impact of the vulnerability REDHAT-BUG-611551?
The impact of REDHAT-BUG-611551 includes potential application crashes and the risk of memory corruption when handling incorrectly formatted base64 inputs.
Is there a workaround for REDHAT-BUG-611551?
Currently, the recommended solution for REDHAT-BUG-611551 is to apply the necessary updates, as no specific workarounds have been provided.