PT-2006-4901 · Eremove · Eremove

Dedi Dwianto

·

Publicado

2006-08-10

·

Atualizado

2018-10-17

·

CVE-2006-4057

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Eremove version 1.4
Description The issue is related to a buffer overflow in the preview create function, which can be triggered by a large email attachment. This can cause a denial of service, resulting in an application crash, and potentially allow the execution of arbitrary code.
Recommendations For Eremove version 1.4, consider disabling the preview create function in gui.cpp to prevent potential exploitation until a fix is available. Restrict the handling of large email attachments to minimize the risk of a denial of service or code execution.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-4057

Produtos afetados

Eremove