Vulnerability Development mailing list archives

Re: IMAPrev1 v12.250 - Local BOF under Linux (fwd)


From: MRC () CAC WASHINGTON EDU (Mark Crispin)
Date: Tue, 30 May 2000 10:59:33 -0700


re: imapd buffer overflow when HOME set to a very large string.

The code in question is never called when imapd is run as a daemon.  It is
only called when imapd is run under a shell (e.g. for testing).

I'll make the seg fault not happen in the next version, but basically it is
not an issue for actual imapd operation.


Current thread: