Mageia alert MGASA-2014-0373 (procmail)
| From: | Mageia Updates <buildsystem-daemon@mageia.org> | |
| To: | updates-announce@ml.mageia.org | |
| Subject: | [updates-announce] MGASA-2014-0373: Updated procmail packages fix CVE-2014-3618 | |
| Date: | Sun, 7 Sep 2014 11:56:40 +0200 | |
| Message-ID: | <20140907095640.7730D43A2F@valstar.mageia.org> |
MGASA-2014-0373 - Updated procmail packages fix CVE-2014-3618 Publication date: 07 Sep 2014 URL: http://advisories.mageia.org/MGASA-2014-0373.html Type: security Affected Mageia releases: 3, 4 CVE: CVE-2014-3618 Description: Updated procmail package fixes security vulnerability: A heap-based buffer overflow was reported in procmail's formail utility when parsing addresses with unbalanced quotes (CVE-2014-3618). References: - https://bugs.mageia.org/show_bug.cgi?id=14056 - https://bugzilla.redhat.com/show_bug.cgi?id=1137581 - http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3618 SRPMS: - 4/core/procmail-3.22-19.1.mga4 - 3/core/procmail-3.22-18.1.mga3
