Lucene search

K
archlinuxArch LinuxASA-201512-13
HistoryDec 22, 2015 - 12:00 a.m.

claws-mail: buffer overflow

2015-12-2200:00:00
Arch Linux
lists.archlinux.org
8

0.006 Low

EPSS

Percentile

78.2%

A remotely triggerable buffer overflow has been found in the code of
claws-mail handling character conversion, in functions conv_jistoeuc(),
conv_euctojis() and conv_sjistoeuc(), in codeconv.c.
There was no bounds checking on buffers passed to these functions, some
stack-based but other potentially heap-based.
This issue has been located in the wild and might currently be exploited.

OSVersionArchitecturePackageVersionFilename
anyanyanyclaws-mail< 3.13.1-1UNKNOWN