[Bug 1071694] [NEW] CVE-2012-5671: Heap-buffer overflow in DNS decode logic used for DKIM

Felix Geyer debfx-pkg at fobos.de
Fri Oct 26 09:21:52 UTC 2012


*** This bug is a security vulnerability ***

Public security bug reported:

A heap-buffer overflow was found in the DKIM DNS decode logic, used by
Exim between version 4.70 and 4.80.

Exim 4.80.1 release announcement:
https://lists.exim.org/lurker/message/20121026.080330.74b9147b.en.html

** Affects: exim4 (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: exim4 (Fedora)
     Importance: Unknown
         Status: Unknown

** Bug watch added: Red Hat Bugzilla #869953
   https://bugzilla.redhat.com/show_bug.cgi?id=869953

** Also affects: exim4 (Fedora) via
   https://bugzilla.redhat.com/show_bug.cgi?id=869953
   Importance: Unknown
       Status: Unknown

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-5671

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to exim4 in Ubuntu.
https://bugs.launchpad.net/bugs/1071694

Title:
  CVE-2012-5671: Heap-buffer overflow in DNS decode logic used for DKIM

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/exim4/+bug/1071694/+subscriptions



More information about the Ubuntu-server-bugs mailing list