CVE-2004-1007

Publication date 1 March 2005

Last updated 24 July 2024


Ubuntu priority

The quoted-printable decoder in bogofilter 0.17.4 to 0.92.7 allows remote attackers to cause a denial of service (application crash) via mail headers that cause a line feed (LF) to be replaced by a null byte that is written to an incorrect memory address.

Status

Package Ubuntu Release Status
bogofilter 7.04 feisty
Fixed 1.0.1-1ubuntu1
6.10 edgy
Fixed 1.0.1-1ubuntu1
6.06 LTS dapper
Fixed 1.0.1-1ubuntu1

References

Related Ubuntu Security Notices (USN)

    • USN-26-1
    • bogofilter vulnerability
    • 17 November 2004

Other references