CVE-2008-2469

Publication date 23 October 2008

Last updated 24 July 2024


Ubuntu priority

Heap-based buffer overflow in the SPF_dns_resolv_lookup function in Spf_dns_resolv.c in libspf2 before 1.2.8 allows remote attackers to execute arbitrary code via a long DNS TXT record with a modified length field.

Status

Package Ubuntu Release Status
libspf2 8.04 LTS hardy
Fixed 1.2.5.dfsg-4ubuntu0.8.04.1
7.10 gutsy
Fixed 1.2.5.dfsg-4ubuntu0.7.10.1
6.06 LTS dapper
Fixed 1.2.5-3ubuntu0.1