Bug 173997 - sylpheed-claws: CVE-2005-3354 (arbitrary code execution vulnerability)
Summary: sylpheed-claws: CVE-2005-3354 (arbitrary code execution vulnerability)
Keywords:
Status: CLOSED NEXTRELEASE
Alias: None
Product: Fedora
Classification: Fedora
Component: sylpheed-claws
Version: 3
Hardware: All
OS: Linux
high
medium
Target Milestone: ---
Assignee: Andreas Bierfert
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2005-11-23 15:04 UTC by Ville Skyttä
Modified: 2007-11-30 22:11 UTC (History)
1 user (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2005-11-23 15:53:14 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)

Description Ville Skyttä 2005-11-23 15:04:15 UTC
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3354 
 
Probably fixed in 1.9.100 in FC4+, but probably unfixed in FC-3's 1.0.5.  
Potential fix from Gentoo's CVS: 
http://www.gentoo.org/cgi-bin/viewcvs.cgi/*checkout*/mail-client/sylpheed-claws/files/ldif-buffer-overflow-fix.diff

Comment 1 Andreas Bierfert 2005-11-23 15:10:13 UTC
thanks for the heads up


Note You need to log in before you can comment on or make changes to this bug.