[Bug 779391] [NEW] CVE-2011-1764: format string vulnerability

Felix Geyer debfx at fobos.de
Sun May 8 09:14:34 UTC 2011


*** This bug is a security vulnerability ***

Public security bug reported:

Binary package hint: exim4

>From http://www.debian.org/security/2011/dsa-2232

> It was discovered that Exim, the default mail transport agent in
Debian, uses DKIM data obtain from DNS directly in a format string,
potentially allowing malicious mail senders to execute arbitrary code.
(CVE-2011-1764)

** Affects: exim4 (Ubuntu)
     Importance: Undecided
         Status: New

** Visibility changed to: Public

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2011-1764

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to exim4 in Ubuntu.
https://bugs.launchpad.net/bugs/779391

Title:
  CVE-2011-1764: format string vulnerability



More information about the Ubuntu-server-bugs mailing list