Summary
The remote host is missing an update to fetchmail
announced via advisory DSA 939-1.
Daniel Drake discovered a problem in fetchmail, an SSL enabled POP3, APOP, IMAP mail gatherer/forwarder, that can cause a crash when the program is running in multidrop mode and receives messages without headers.
The old stable distribution (woody) does not seem to be affected by this problem.
Solution
For the stable distribution (sarge) this problem has been fixed in version 6.2.5-12sarge4.
For the unstable distribution (sid) this problem has been fixed in version 6.3.1-1.
We recommend that you upgrade your fetchmail package.
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%20939-1
Severity
Classification
-
CVE CVE-2005-4348 -
CVSS Base Score: 7.8
AV:N/AC:L/Au:N/C:N/I:N/A:C
Related Vulnerabilities