libSieve Header Name Buffer Overrun Vulnerability
BID:6294
Info
libSieve Header Name Buffer Overrun Vulnerability
| Bugtraq ID: | 6294 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 02 2002 12:00AM |
| Updated: | Dec 02 2002 12:00AM |
| Credit: | Discovery of this vulnerability is credited to Timo Sirainen <[email protected]>. |
| Vulnerable: |
Cyrusoft libSieve 2.1.2 |
| Not Vulnerable: | |
Discussion
libSieve Header Name Buffer Overrun Vulnerability
A vulnerability has been discovered in the Sieve library. By passing a malicious header of excessive length to a vulnerable program, it is possible to overrun a buffer and corrupt memory. By overwriting sensitive memory with attacker-supplied values, it may be possible to execute arbitrary instructions with privileges of the vulnerable process.
A vulnerability has been discovered in the Sieve library. By passing a malicious header of excessive length to a vulnerable program, it is possible to overrun a buffer and corrupt memory. By overwriting sensitive memory with attacker-supplied values, it may be possible to execute arbitrary instructions with privileges of the vulnerable process.
Solution / Fix
libSieve Header Name Buffer Overrun Vulnerability
Solution:
An unofficial patch has been made available by Timo Sirainen <[email protected]> and can be obtained from the referenced advisory.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
An unofficial patch has been made available by Timo Sirainen <[email protected]> and can be obtained from the referenced advisory.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
libSieve Header Name Buffer Overrun Vulnerability
References:
References:
- Cyrus Sieve / libSieve buffer overflow (Timo Sirainen
)