| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.52498 |
| Category: | FreeBSD Local Security Checks |
| Title: | FreeBSD Ports: emil |
| Summary: | FreeBSD Ports: emil |
| Description: | The remote host is missing an update to the system as announced in the referenced advisory. The following package is affected: emil CVE-2004-0152 Multiple stack-based buffer overflows in (1) the encode_mime function, (2) the encode_uuencode function, (3) or the decode_uuencode function for emil 2.1.0 and earlier allow remote attackers to execute arbitrary code via e-mail messages containing attachments with filenames. CVE-2004-0153 Multiple format string vulnerabilities in emil 2.1.0 and earlier may allow remote attackers to execute arbitrary code by triggering certain error messages. Solution: Update your system with the appropriate patches or software upgrades. http://www.debian.org/security/2004/dsa-468 http://lists.netsys.com/pipermail/full-disclosure/2004-March/019325.html http://www.vuxml.org/freebsd/ce46b93a-80f2-11d8-9645-0020ed76ef5a.html |
| Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2004-0152 Bugtraq: 20040325 Re: [SECURITY] [DSA 468-1] New emil packages fix multiple vulnerabilities (Google Search) http://marc.theaimsgroup.com/?l=bugtraq&m=108024939827236&w=2 Debian Security Information: DSA-468 (Google Search) http://www.debian.org/security/2004/dsa-468 SuSE Security Announcement: SuSE-SA:2004:008 (Google Search) XForce ISS Database: emil-email-bo(15601) http://xforce.iss.net/xforce/xfdb/15601 Common Vulnerability Exposure (CVE) ID: CVE-2004-0153 XForce ISS Database: emil-format-string(15602) http://xforce.iss.net/xforce/xfdb/15602 |
| Copyright | Copyright (c) 2005 E-Soft Inc. http://www.securityspace.com |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|