A set of buffer overflows have been discovered in masqmail, a mail
transport agent for hosts without a permanent Internet connection. In
addition to this privileges were dropped only after reading a user supplied
configuration file. Together this could be exploited to gain unauthorized
root access to the machine on which masqmail is installed.