Package: postfix-policyd
Version: 1.80-2.1
Severity: grave
Tags: security
Justification: user security hole

A vulnerability has been found in policyd. From CVE-2007-3791:

"Buffer overflow in the w_read function in sockets.c in Cami Sardinha
and Nigel Kukard policyd before 1.81 for Postfix allows remote
attackers to cause a denial of service and possibly execute arbitrary
code via long SMTP commands."

This is fixed in 1.81 according to
http://sourceforge.net/project/shownotes.php?release_id=522366

Please mention the CVE id in the changelog.


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to