Linux /bin/mail Carbon Copy Field Buffer Overrun Vulnerability
BID:7760
Info
Linux /bin/mail Carbon Copy Field Buffer Overrun Vulnerability
| Bugtraq ID: | 7760 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 30 2003 12:00AM |
| Updated: | May 30 2003 12:00AM |
| Credit: | The discovery of this vulnerability has been credited to [email protected]. |
| Vulnerable: |
Slackware Linux 8.1 Redhat Linux 9.0 i386 |
| Not Vulnerable: |
Slackware Linux 9.0 |
Discussion
Linux /bin/mail Carbon Copy Field Buffer Overrun Vulnerability
A vulnerability has been discovered in the Linux /bin/mail utility. The problem occurs when processing excessive data within the carbon copy field. Due to insufficient bounds checking while parsing this information it may be possible to trigger a buffer overrun.
An attacker could exploit this issue to execute arbitrary commands. It should be noted that local exploitation may be inconsequential, however a malicious e-mail message or CGI interface could be a sufficient conduit for remote exploitation.
A vulnerability has been discovered in the Linux /bin/mail utility. The problem occurs when processing excessive data within the carbon copy field. Due to insufficient bounds checking while parsing this information it may be possible to trigger a buffer overrun.
An attacker could exploit this issue to execute arbitrary commands. It should be noted that local exploitation may be inconsequential, however a malicious e-mail message or CGI interface could be a sufficient conduit for remote exploitation.
Exploit / POC
Linux /bin/mail Carbon Copy Field Buffer Overrun Vulnerability
A proof of concept perl script has been made available to demonstrate this issue in a local context.
A proof of concept perl script has been made available to demonstrate this issue in a local context.
Solution / Fix
Linux /bin/mail Carbon Copy Field Buffer Overrun Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Linux /bin/mail Carbon Copy Field Buffer Overrun Vulnerability
References:
References: