CVE-2007-2958

Format string vulnerability in the inc_put_error function in src/inc.c in Sylpheed 2.4.4, and Sylpheed-Claws (Claws Mail) 1.9.100 and 2.10.0, allows remote POP3 servers to execute arbitrary code via format string specifiers in crafted replies.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sylpheed:sylpheed:2.4.4:*:*:*:*:*:*:*
cpe:2.3:a:sylpheed-claws:sylpheed-claws:1.9.100:*:*:*:*:*:*:*
cpe:2.3:a:sylpheed-claws:sylpheed-claws:2.10.0:*:*:*:*:*:*:*

History

21 Nov 2024, 00:32

Type Values Removed Values Added
References () http://bugs.gentoo.org/show_bug.cgi?id=190104 - () http://bugs.gentoo.org/show_bug.cgi?id=190104 -
References () http://osvdb.org/40184 - () http://osvdb.org/40184 -
References () http://secunia.com/advisories/26550 - Patch, Vendor Advisory () http://secunia.com/advisories/26550 - Patch, Vendor Advisory
References () http://secunia.com/advisories/26610 - () http://secunia.com/advisories/26610 -
References () http://secunia.com/advisories/27229 - () http://secunia.com/advisories/27229 -
References () http://secunia.com/advisories/27379 - () http://secunia.com/advisories/27379 -
References () http://secunia.com/secunia_research/2007-70/advisory/ - Patch, Vendor Advisory () http://secunia.com/secunia_research/2007-70/advisory/ - Patch, Vendor Advisory
References () http://security.gentoo.org/glsa/glsa-200710-29.xml - () http://security.gentoo.org/glsa/glsa-200710-29.xml -
References () http://www.novell.com/linux/security/advisories/2007_20_sr.html - () http://www.novell.com/linux/security/advisories/2007_20_sr.html -
References () http://www.securityfocus.com/bid/25430 - () http://www.securityfocus.com/bid/25430 -
References () http://www.vupen.com/english/advisories/2007/2971 - () http://www.vupen.com/english/advisories/2007/2971 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=254121 - () https://bugzilla.redhat.com/show_bug.cgi?id=254121 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/36238 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/36238 -
References () https://www.redhat.com/archives/fedora-package-announce/2007-September/msg00077.html - () https://www.redhat.com/archives/fedora-package-announce/2007-September/msg00077.html -

Information

Published : 2007-08-27 17:17

Updated : 2024-11-21 00:32


NVD link : CVE-2007-2958

Mitre link : CVE-2007-2958

CVE.ORG link : CVE-2007-2958


JSON object : View

Products Affected

sylpheed-claws

  • sylpheed-claws

sylpheed

  • sylpheed