Lucene search

K
osvGoogleOSV:DSA-468
HistoryMar 24, 2004 - 12:00 a.m.

emil - several vulnerabilities

2004-03-2400:00:00
Google
osv.dev
11

0.049 Low

EPSS

Percentile

92.8%

Ulf Härnhammar discovered a number of vulnerabilities in emil, a
filter for converting Internet mail messages. The vulnerabilities
fall into two categories:

  • CAN-2004-0152
    Buffer overflows in (1) the encode_mime function,
    (2) the encode_uuencode function, (3) the decode_uuencode
    function. These bugs could allow a carefully crafted email message
    to cause the execution of arbitrary code supplied with the message
    when it is acted upon by emil.

  • CAN-2004-0153
    Format string bugs in statements which print
    various error messages. The exploit potential of these bugs has
    not been established, and is probably configuration-dependent.

For the stable distribution (woody) these problems have been fixed in
version 2.1.0-beta9-11woody1.

For the unstable distribution (sid) these problems will be fixed soon.

We recommend that you update your emil package.