Bug 869953 (CVE-2012-5671) - CVE-2012-5671 exim: Heap-buffer overflow in DNS decode logic used for DKIM
Summary: CVE-2012-5671 exim: Heap-buffer overflow in DNS decode logic used for DKIM
Keywords:
Status: CLOSED ERRATA
Alias: CVE-2012-5671
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
urgent
urgent
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 870347 870348
Blocks: 869954
TreeView+ depends on / blocked
 
Reported: 2012-10-25 08:25 UTC by Huzaifa S. Sidhpurwala
Modified: 2021-02-17 08:29 UTC (History)
6 users (show)

Fixed In Version: exim 4.80.1
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2013-02-25 15:27:40 UTC
Embargoed:


Attachments (Terms of Use)
dkim-dns-buffer-overflow-protection-patch (2.13 KB, patch)
2012-10-25 08:26 UTC, Huzaifa S. Sidhpurwala
no flags Details | Diff

Description Huzaifa S. Sidhpurwala 2012-10-25 08:25:23 UTC
A heap-buffer overflow was found in the DKIM DNS decode logic, used by exim.  A remote attacker could use this flaw to execute arbitrary code on the mail server running Exim.

This is fixed in version 4.80.1

Comment 1 Huzaifa S. Sidhpurwala 2012-10-25 08:26:41 UTC
Created attachment 633222 [details]
dkim-dns-buffer-overflow-protection-patch

Comment 3 Huzaifa S. Sidhpurwala 2012-10-25 08:31:16 UTC
Support for DKIM (DomainKeys Identified Mail) in exim was introduced in version 4.70. Also version 4.69 had experimental support. More details available at:

http://wiki.exim.org/DKIM

Red Hat Enterprise Linux 5, ships version exim-4.63, which does not contain the vulnerable DKIM code. Hence the version of exim shipped with Red Hat Enterprise Linux 5 is not vulnerable to this issue.

Comment 4 Huzaifa S. Sidhpurwala 2012-10-25 08:32:12 UTC
Statement:

Not Vulnerable. This issue does not affect the version of exim as shipped with Red Hat Enterprise Linux 5.

Comment 5 Huzaifa S. Sidhpurwala 2012-10-25 08:34:18 UTC
This issue affects the version of exim as shipped with Fedora 16 and Fedora 17.

The issue affects the version of exim as shipped with EPEL-6.

Comment 6 Jan Lieskovsky 2012-10-26 08:31:38 UTC
Public via:
  https://lists.exim.org/lurker/message/20121026.080330.74b9147b.en.html

Comment 7 Jan Lieskovsky 2012-10-26 08:33:48 UTC
Created exim tracking bugs for this issue

Affects: fedora-all [bug 870347]
Affects: epel-6 [bug 870348]

Comment 8 Vincent Danen 2012-10-26 15:01:55 UTC
*** Bug 870356 has been marked as a duplicate of this bug. ***

Comment 9 customercare 2013-02-25 15:19:15 UTC
Can this be closed? 

It was fixed for FC 16 / 17 and FC 18 comes with 4.80.1

Comment 10 Tomas Hoger 2013-02-25 15:27:40 UTC
Yes, closing, thank you!


Note You need to log in before you can comment on or make changes to this bug.