Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Fetchmail POP3 Client Buffer Overflow Vulnerability

Fetchmail POP3 client is prone to a buffer-overflow vulnerability. This issue presents itself because the application fails to perform boundary checks before copying user-supplied data into sensitive process buffers. This includes POP variants such as APOP and others.

A successful attack can result in overflowing a finite-sized buffer and can ultimately lead to arbitrary code execution in the context of the Fetchmail process. This may allow the attacker to gain elevated privileges.







 

Privacy Statement
Copyright 2008, SecurityFocus