Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Fetchmail 输入验证错误漏洞
Vulnerability Description
Fetchmail是一个下载邮件的应用程序。 Fetchmail在处理消息时存在输入验证错误漏洞,以-v -v verbose级别运行的fetchmail在试图打印超过2048字节的头时会重新调整缓冲区大小并填充消息的多出部分,但没有重新初始化其va_list类型的源指针,因此可能会在栈上的无效地址读取数据,导致出现分段错误而崩溃。
CVSS Information
N/A
Vulnerability Type
N/A