Back to search
CVE-2014-3618
Published: Sep 8, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
Heap-based buffer overflow in formisc.c in formail in procmail 3.22 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted email header, related to "unbalanced quotes."
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
SUSE-SU-2014:1137
vendor-advisory
x_refsource_SUSE
61108
third-party-advisory
x_refsource_SECUNIA
openSUSE-SU-2014:1114
vendor-advisory
x_refsource_SUSE
DSA-3019
vendor-advisory
x_refsource_DEBIAN
[oss-security] 20140903 heap overflow in procmail
mailing-list
x_refsource_MLIST
APPLE-SA-2015-09-30-3
vendor-advisory
x_refsource_APPLE
USN-2340-1
vendor-advisory
x_refsource_UBUNTU
https://support.apple.com/HT205267
x_refsource_CONFIRM
RHSA-2014:1172
vendor-advisory
x_refsource_REDHAT
http://linux.oracle.com/errata/ELSA-2014-1172.html
x_refsource_CONFIRM
61090
third-party-advisory
x_refsource_SECUNIA
69573
vdb-entry
x_refsource_BID
61076
third-party-advisory
x_refsource_SECUNIA
procmail-addresses-bo(95688)
vdb-entry
x_refsource_XF
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now