Stack-based buffer overflow in a certain Debian patch for xbuffy before 3.3.bl.3.dfsg-9 allows remote attackers to execute arbitrary code via the subject of an email, possibly related to indent subject lines.
2014-05-05T16:07:05.643
2025-04-12T10:46:40.837
Deferred
CVSSv2: 6.8 (MEDIUM)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | debian | xbuffy | ≤ 3.3.bl.3.dfsg-8 | Yes |
Application | debian | xbuffy | 3.2.1-1 | Yes |
Application | debian | xbuffy | 3.2.1-2 | Yes |
Application | debian | xbuffy | 3.2.1-3 | Yes |
Application | debian | xbuffy | 3.2.1-4 | Yes |
Application | debian | xbuffy | 3.3-1 | Yes |
Application | debian | xbuffy | 3.3.b1.3-4 | Yes |
Application | debian | xbuffy | 3.3.bl.2-1 | Yes |
Application | debian | xbuffy | 3.3.bl.3-1 | Yes |
Application | debian | xbuffy | 3.3.bl.3-2 | Yes |
Application | debian | xbuffy | 3.3.bl.3-3 | Yes |
Application | debian | xbuffy | 3.3.bl.3-5 | Yes |
Application | debian | xbuffy | 3.3.bl.3-6 | Yes |
Application | debian | xbuffy | 3.3.bl.3-7 | Yes |
Application | debian | xbuffy | 3.3.bl.3-8 | Yes |
Application | debian | xbuffy | 3.3.bl.3-9 | Yes |
Application | debian | xbuffy | 3.3.bl.3-10 | Yes |
Application | debian | xbuffy | 3.3.bl.3-11 | Yes |
Application | debian | xbuffy | 3.3.bl.3-12 | Yes |
Application | debian | xbuffy | 3.3.bl.3-13 | Yes |
Application | debian | xbuffy | 3.3.bl.3-14 | Yes |
Application | debian | xbuffy | 3.3.bl.3-15 | Yes |
Application | debian | xbuffy | 3.3.bl.3-16 | Yes |
Application | debian | xbuffy | 3.3.bl.3-17 | Yes |
Application | debian | xbuffy | 3.3.bl.3-18 | Yes |
Application | debian | xbuffy | 3.3.bl.3-19 | Yes |
Application | debian | xbuffy | 3.3.bl.3-20 | Yes |
Application | debian | xbuffy | 3.3.bl.3-21 | Yes |
Application | debian | xbuffy | 3.3.bl.3-22 | Yes |
Application | debian | xbuffy | 3.3.bl.3-23 | Yes |
Application | debian | xbuffy | 3.3.bl.3-24 | Yes |
Application | debian | xbuffy | 3.3.bl.3-25 | Yes |
Application | debian | xbuffy | 3.3.bl.3.dfsg-1 | Yes |
Application | debian | xbuffy | 3.3.bl.3.dfsg-2 | Yes |
Application | debian | xbuffy | 3.3.bl.3.dfsg-3 | Yes |
Application | debian | xbuffy | 3.3.bl.3.dfsg-4 | Yes |
Application | debian | xbuffy | 3.3.bl.3.dfsg-5 | Yes |
Application | debian | xbuffy | 3.3.bl.3.dfsg-6 | Yes |
Application | debian | xbuffy | 3.3.bl.3.dfsg-7 | Yes |