CVE-2007-3791

Buffer overflow in the w_read function in sockets.c in Cami Sardinha and Nigel Kukard policyd before 1.81 for Postfix allows remote attackers to cause a denial of service and possibly execute arbitrary code via long SMTP commands. NOTE: some of these details are obtained from third party information.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:policyd:policyd:1.70:*:*:*:*:*:*:*
cpe:2.3:a:policyd:policyd:1.71:*:*:*:*:*:*:*
cpe:2.3:a:policyd:policyd:1.72:*:*:*:*:*:*:*
cpe:2.3:a:policyd:policyd:1.73:*:*:*:*:*:*:*
cpe:2.3:a:policyd:policyd:1.74:*:*:*:*:*:*:*
cpe:2.3:a:policyd:policyd:1.75:*:*:*:*:*:*:*
cpe:2.3:a:policyd:policyd:1.76:*:*:*:*:*:*:*
cpe:2.3:a:policyd:policyd:1.77:*:*:*:*:*:*:*
cpe:2.3:a:policyd:policyd:1.78:*:*:*:*:*:*:*
cpe:2.3:a:policyd:policyd:1.79:*:*:*:*:*:*:*
cpe:2.3:a:policyd:policyd:1.80:*:*:*:*:*:*:*

History

21 Nov 2024, 00:34

Type Values Removed Values Added
References () http://osvdb.org/38091 - () http://osvdb.org/38091 -
References () http://secunia.com/advisories/26021 - Vendor Advisory () http://secunia.com/advisories/26021 - Vendor Advisory
References () http://secunia.com/advisories/26649 - () http://secunia.com/advisories/26649 -
References () http://sourceforge.net/project/shownotes.php?release_id=522366 - () http://sourceforge.net/project/shownotes.php?release_id=522366 -
References () http://svn.linuxrulz.org/WebSVN/diff.php?repname=Policyd&path=%2Ftrunk%2Fsockets.c&rev=4&sc=0 - () http://svn.linuxrulz.org/WebSVN/diff.php?repname=Policyd&path=%2Ftrunk%2Fsockets.c&rev=4&sc=0 -
References () http://svn.linuxrulz.org/WebSVN/log.php?repname=Policyd&path=%2Fbranches%2Fv1.8x%2Fsockets.c&rev=0&sc=0&isdir=0 - () http://svn.linuxrulz.org/WebSVN/log.php?repname=Policyd&path=%2Fbranches%2Fv1.8x%2Fsockets.c&rev=0&sc=0&isdir=0 -
References () http://www.debian.org/security/2007/dsa-1361 - () http://www.debian.org/security/2007/dsa-1361 -
References () http://www.securityfocus.com/bid/24899 - () http://www.securityfocus.com/bid/24899 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/35394 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/35394 -

Information

Published : 2007-07-15 23:30

Updated : 2024-11-21 00:34


NVD link : CVE-2007-3791

Mitre link : CVE-2007-3791

CVE.ORG link : CVE-2007-3791


JSON object : View

Products Affected

policyd

  • policyd