Boletines de Vulnerabilidades

DSA-3104 bsd-mailx - security update


Información sobre el sistema

   
Software afectado Debian

Descripción

It was discovered that bsd-mailx, an implementation of the mailcommand, had an undocumented feature which treats syntactically validemail addresses as shell commands to execute.

More info:

https://www.debian.org/security/2014/dsa-3104

Identificadores estándar

Propiedad Valor
CVE CVE-2014-7844 ,CVE-2004-2771 and DSA-3104.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-12-18

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT