Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

QMail Substdio_Put() Function Remote Integer Overflow Vulnerability

QMail is susceptible to a remote integer overflow vulnerability in the substdio_put() function.

Specifically, the substdio_put() function can be coerced into overflowing an integer value, resulting in writing data to an unintended location. This may only be possible in environments where more than 4 gigabytes of virtual memory is available, such as 64 bit systems.

It is conjectured that remote code executing may be possible.







 

Privacy Statement
Copyright 2009, SecurityFocus