alpine · CVE-2014-3618

Quick triage

Priority: not assigned Published: Updated:

View at Official alpine advisory, NVD, CVE.org · CVE detail

Freshness: no update timestamp found; verify against the upstream OS advisory manually.

Tracker summary

CVE-2014-3618: 1 source package rows (procmail); 1 state rows across 1 repos (3.11-main); fixed 0, open 1.

Description:

Heap-based buffer overflow in formisc.c in formail in procmail 3.22 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted email header, related to "unbalanced quotes."

cvelogic Threat Intelligence