RE: procmail heap overflow

From: Christopher Meiklejohn (cmeikat_private)
Date: Wed Jun 19 2002 - 11:10:31 PDT

  • Next message: EnGarde Secure Linux: "[ESA-20020619-014] 'apache' chunk handling overflow vulnerability"

    I was noticing this behaviour with v3.22 on FreeBSD 4.5.
    # procmail
    ^Cprocmail: Terminating prematurely
    Segmentation fault (core dumped)
    -----Original Message-----
    From: venglinat_private [mailto:venglinat_private]On
    Behalf Of Przemyslaw Frasunek
    Sent: Wednesday, June 19, 2002 4:12 AM
    To: flatline
    Cc: bugtraqat_private; vuln-devat_private
    Subject: Re: procmail heap overflow
    flatline <flatlineat_private> napisał(a):
    BTW. Recent versions of procmail segfaults after SIGINT/SIGTERM/SIGHUP
    when invoked with no arguments and no input:
    [venglin@clitoris venglin]$ procmail
    procmail: Terminating prematurely
    Segmentation fault
    But this is probably only a minor bug.
    * Fido: 2:480/124 ** WWW: ** NIC-HDL: PMF9-RIPE *
    * Inet: przemyslawat_private ** PGP: D48684904685DF43EA93AFA13BE170BF *

    This archive was generated by hypermail 2b30 : Wed Jun 19 2002 - 15:01:56 PDT