Oval Definition:oval:com.redhat.rhsa:def:20090275
Revision Date:2009-02-19Version:635
Title:RHSA-2009:0275: imap security update (Moderate)
Description:The imap package provides server daemons for both the IMAP (Internet Message Access Protocol) and POP (Post Office Protocol) mail access protocols.

  • A buffer overflow flaw was discovered in the dmail and tmail mail delivery utilities shipped with imap. If either of these utilities were used as a mail delivery agent, a remote attacker could potentially use this flaw to run arbitrary code as the targeted user by sending a specially-crafted mail message to the victim. (CVE-2008-5005)

    Users of imap should upgrade to these updated packages, which contain a backported patch to resolve this issue.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2008-5005
    RHSA-2009:0275
    RHSA-2009:0275-01
    RHSA-2009:0275-01
    Platform(s):Red Hat Enterprise Linux 3
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 3 is installed
  • AND
  • imap-devel is earlier than 1:2002d-15
  • AND imap-devel is signed with Red Hat master key
  • imap-utils is earlier than 1:2002d-15
  • AND imap-utils is signed with Red Hat master key
  • imap is earlier than 1:2002d-15
  • AND imap is signed with Red Hat master key
  • BACK