Required CVE Record Information
Description
Buffer overflow in the w_read function in sockets.c in Cami Sardinha and Nigel Kukard policyd before 1.81 for Postfix allows remote attackers to cause a denial of service and possibly execute arbitrary code via long SMTP commands. NOTE: some of these details are obtained from third party information.
References 9 Total
- http://svn.linuxrulz.org/WebSVN/log.php?repname=Policyd&path=%2Fbranches%2Fv1.8x%2Fsockets.c&rev=0&sc=0&isdir=0
- secunia.com: 26021 third-party-advisory
- securityfocus.com: 24899 vdb-entry
- secunia.com: 26649 third-party-advisory
- http://svn.linuxrulz.org/WebSVN/diff.php?repname=Policyd&path=%2Ftrunk%2Fsockets.c&rev=4&sc=0
- exchange.xforce.ibmcloud.com: policyd-wread-bo(35394) vdb-entry
- debian.org: DSA-1361 vendor-advisory
- osvdb.org: 38091 vdb-entry
- http://sourceforge.net/project/shownotes.php?release_id=522366
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 9 Total
- http://svn.linuxrulz.org/WebSVN/log.php?repname=Policyd&path=%2Fbranches%2Fv1.8x%2Fsockets.c&rev=0&sc=0&isdir=0 x_transferred
- secunia.com: 26021 third-party-advisoryx_transferred
- securityfocus.com: 24899 vdb-entryx_transferred
- secunia.com: 26649 third-party-advisoryx_transferred
- http://svn.linuxrulz.org/WebSVN/diff.php?repname=Policyd&path=%2Ftrunk%2Fsockets.c&rev=4&sc=0 x_transferred
- exchange.xforce.ibmcloud.com: policyd-wread-bo(35394) vdb-entryx_transferred
- debian.org: DSA-1361 vendor-advisoryx_transferred
- osvdb.org: 38091 vdb-entryx_transferred
- http://sourceforge.net/project/shownotes.php?release_id=522366 x_transferred