Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.67713
Kategorie:FreeBSD Local Security Checks
Titel:FreeBSD Ports: bogofilter
Zusammenfassung:The remote host is missing an update to the system; as announced in the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update to the system
as announced in the referenced advisory.

Vulnerability Insight:
The following packages are affected:

bogofilter
bogofilter-sqlite
bogofilter-tc

CVE-2010-2494
Multiple buffer underflows in the base64 decoder in base64.c in (1)
bogofilter and (2) bogolexer in bogofilter before 1.2.2 allow remote
attackers to cause a denial of service (heap memory corruption and
application crash) via an e-mail message with invalid base64 data that
begins with an = (equals) character.

Solution:
Update your system with the appropriate patches or
software upgrades.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2010-2494
40427
http://secunia.com/advisories/40427
41239
http://secunia.com/advisories/41239
41339
http://www.securityfocus.com/bid/41339
66002
http://www.osvdb.org/66002
ADV-2010-2233
http://www.vupen.com/english/advisories/2010/2233
FEDORA-2010-13139
http://lists.fedoraproject.org/pipermail/package-announce/2010-August/046558.html
FEDORA-2010-13154
http://lists.fedoraproject.org/pipermail/package-announce/2010-August/046590.html
SUSE-SR:2010:014
http://lists.opensuse.org/opensuse-security-announce/2010-08/msg00001.html
USN-980-1
http://www.ubuntu.com/usn/USN-980-1
[oss-security] 20100705 Re: Request CVE ID for bogofilter base64 decoder
http://marc.info/?l=oss-security&m=127831760712436&w=2
[oss-security] 20100705 Request CVE ID for bogofilter base64 decoder
http://marc.info/?l=oss-security&m=127814747231102&w=2
[oss-security] 20100706 REPOST: CVE request for bogofilter
http://marc.info/?l=oss-security&m=127840569013531&w=2
[oss-security] 20100706 Re: Request CVE ID for bogofilter base64 decoder
http://marc.info/?l=oss-security&m=127844323105405&w=2
http://bogofilter.sourceforge.net/security/bogofilter-SA-2010-01
http://bogofilter.svn.sourceforge.net/viewvc/bogofilter/trunk/bogofilter/doc/bogofilter-SA-2010-01?revision=6909&pathrev=6909
http://bogofilter.svn.sourceforge.net/viewvc/bogofilter/trunk/bogofilter/src/base64.c?view=patch&r1=6906&r2=6903
https://bugzilla.redhat.com/show_bug.cgi?id=611551
openSUSE-SU-2012:1648
http://lists.opensuse.org/opensuse-security-announce/2012-12/msg00015.html
openSUSE-SU-2012:1650
http://lists.opensuse.org/opensuse-security-announce/2012-12/msg00016.html
openSUSE-SU-2013:0166
http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00021.html
CopyrightCopyright (C) 2010 E-Soft Inc.

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.